{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
        "slug": "dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/"
        },
        "title": "Check installation and policy paths before declaring Dependency Agent removed",
        "summary": "What can remain after removing the visible Dependency Agent extension?",
        "format": {
            "slug": "checklist",
            "name": "Checklist"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "continuity-recovery",
            "label": "Continuity & recovery",
            "alt": "Paired infrastructure paths converging on a stable recovered service.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:24:29+00:00",
        "modified_at": "2026-09-10T02:04:58+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 240,
        "potentially_affected": "Azure VMs and scale sets retiring Dependency Agent and its map-dependent monitoring.",
        "dse_recommendation": "Reconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal.",
        "primary_source": {
            "name": "Remove Dependency Agent from Azure Virtual Machines and Virtual Machine Scale Sets - Azure Monitor | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Microsoft distinguishes retirement of the VM insights map feature and Dependency Agent from retirement of VM insights itself. Manually installed agents do not appear in the extension inventory, and extension removal does not remove those standalone installations. Manual-upgrade scale sets need an additional instance-update step. Policy assignments or automation can reinstall the agent. Removal stops map-dependent collection, while previously collected workspace data remains subject to its retention policy. <a href=\"https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Use this check for an approved retirement plan after identifying affected monitoring consumers. The objective is to remove the intended component without confusing loss of map data with loss of all VM monitoring.</p>\n<h2>DSE recommendation</h2>\n<p>Reconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal. Ask the monitoring owner to identify alerts and workbooks that still expect its data and resolve their replacement or retirement first. Have the deployment owner review configuration that could recreate the component. Keep historical evidence preservation separate from continued collection requirements.</p>\n<h2>Verification</h2>\n<p>Pilot the documented removal on a representative nonproduction machine. Check the actual installation and running processes, not just the extension list. For scale sets, verify the intended state across instances. Review the resulting monitoring behavior and return after several days to look for unintended reinstallation. Preserve the responsible policy or deployment evidence if the agent returns; repeating removal without addressing that source is not a completed retirement.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Remove Dependency Agent</a>. Source reviewed September 9, 2026.</p>",
        "content_text": "Source facts\nMicrosoft distinguishes retirement of the VM insights map feature and Dependency Agent from retirement of VM insights itself. Manually installed agents do not appear in the extension inventory, and extension removal does not remove those standalone installations. Manual-upgrade scale sets need an additional instance-update step. Policy assignments or automation can reinstall the agent. Removal stops map-dependent collection, while previously collected workspace data remains subject to its retention policy. Microsoft Learn.\nApplicability\nUse this check for an approved retirement plan after identifying affected monitoring consumers. The objective is to remove the intended component without confusing loss of map data with loss of all VM monitoring.\nDSE recommendation\nReconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal. Ask the monitoring owner to identify alerts and workbooks that still expect its data and resolve their replacement or retirement first. Have the deployment owner review configuration that could recreate the component. Keep historical evidence preservation separate from continued collection requirements.\nVerification\nPilot the documented removal on a representative nonproduction machine. Check the actual installation and running processes, not just the extension list. For scale sets, verify the intended state across instances. Review the resulting monitoring behavior and return after several days to look for unintended reinstallation. Preserve the responsible policy or deployment evidence if the agent returns; repeating removal without addressing that source is not a completed retirement.\nOfficial references\nMicrosoft Learn: Remove Dependency Agent. Source reviewed September 9, 2026.",
        "content_markdown": "## Source facts\n\nMicrosoft distinguishes retirement of the VM insights map feature and Dependency Agent from retirement of VM insights itself. Manually installed agents do not appear in the extension inventory, and extension removal does not remove those standalone installations. Manual-upgrade scale sets need an additional instance-update step. Policy assignments or automation can reinstall the agent. Removal stops map-dependent collection, while previously collected workspace data remains subject to its retention policy. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall).\n\n## Applicability\n\nUse this check for an approved retirement plan after identifying affected monitoring consumers. The objective is to remove the intended component without confusing loss of map data with loss of all VM monitoring.\n\n## DSE recommendation\n\nReconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal. Ask the monitoring owner to identify alerts and workbooks that still expect its data and resolve their replacement or retirement first. Have the deployment owner review configuration that could recreate the component. Keep historical evidence preservation separate from continued collection requirements.\n\n## Verification\n\nPilot the documented removal on a representative nonproduction machine. Check the actual installation and running processes, not just the extension list. For scale sets, verify the intended state across instances. Review the resulting monitoring behavior and return after several days to look for unintended reinstallation. Preserve the responsible policy or deployment evidence if the agent returns; repeating removal without addressing that source is not a completed retirement.\n\n## Official references\n\n[Microsoft Learn: Remove Dependency Agent](https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall). Source reviewed September 9, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Check installation and policy paths before declaring Dependency Agent removed",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/",
                "headline": "Check installation and policy paths before declaring Dependency Agent removed",
                "description": "What can remain after removing the visible Dependency Agent extension?",
                "abstract": "What can remain after removing the visible Dependency Agent extension?",
                "articleBody": "Source facts\nMicrosoft distinguishes retirement of the VM insights map feature and Dependency Agent from retirement of VM insights itself. Manually installed agents do not appear in the extension inventory, and extension removal does not remove those standalone installations. Manual-upgrade scale sets need an additional instance-update step. Policy assignments or automation can reinstall the agent. Removal stops map-dependent collection, while previously collected workspace data remains subject to its retention policy. Microsoft Learn.\nApplicability\nUse this check for an approved retirement plan after identifying affected monitoring consumers. The objective is to remove the intended component without confusing loss of map data with loss of all VM monitoring.\nDSE recommendation\nReconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal. Ask the monitoring owner to identify alerts and workbooks that still expect its data and resolve their replacement or retirement first. Have the deployment owner review configuration that could recreate the component. Keep historical evidence preservation separate from continued collection requirements.\nVerification\nPilot the documented removal on a representative nonproduction machine. Check the actual installation and running processes, not just the extension list. For scale sets, verify the intended state across instances. Review the resulting monitoring behavior and return after several days to look for unintended reinstallation. Preserve the responsible policy or deployment evidence if the agent returns; repeating removal without addressing that source is not a completed retirement.\nOfficial references\nMicrosoft Learn: Remove Dependency Agent. Source reviewed September 9, 2026.",
                "datePublished": "2026-09-10T00:24:29+00:00",
                "dateModified": "2026-09-10T02:04:58+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Check installation and policy paths before declaring Dependency Agent removed"
                },
                "articleSection": [
                    "Business Continuity",
                    "IT"
                ],
                "keywords": [
                    "Business Continuity",
                    "IT",
                    "Checklist",
                    "Information priority"
                ],
                "genre": "Checklist",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 240,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Remove Dependency Agent from Azure Virtual Machines and Virtual Machine Scale Sets - Azure Monitor | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall"
                }
            }
        ]
    }
}