# Check installation and policy paths before declaring Dependency Agent removed

> What can remain after removing the visible Dependency Agent extension?

- Canonical URL: https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/
- Publisher: Detection Systems & Engineering (DSE Security)
- Author: DSE Security Editorial Team
- Published: 2026-09-10T00:24:29+00:00
- Modified: 2026-09-10T02:04:58+00:00
- Last reviewed by DSE: 2026-09-09
- Resource type: Checklist
- DSE priority: Information
- Topics: Business Continuity, IT
- Reading time: 2 minutes

## What you need to know

What can remain after removing the visible Dependency Agent extension?

## Potentially affected

Azure VMs and scale sets retiring Dependency Agent and its map-dependent monitoring.

## DSE recommendation

Reconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal.

## Article

## Source facts

Microsoft distinguishes retirement of the VM insights map feature and Dependency Agent from retirement of VM insights itself. Manually installed agents do not appear in the extension inventory, and extension removal does not remove those standalone installations. Manual-upgrade scale sets need an additional instance-update step. Policy assignments or automation can reinstall the agent. Removal stops map-dependent collection, while previously collected workspace data remains subject to its retention policy. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall).

## Applicability

Use this check for an approved retirement plan after identifying affected monitoring consumers. The objective is to remove the intended component without confusing loss of map data with loss of all VM monitoring.

## DSE recommendation

Reconcile standalone installations, scale-set instances and redeployment policy before accepting Dependency Agent removal. Ask the monitoring owner to identify alerts and workbooks that still expect its data and resolve their replacement or retirement first. Have the deployment owner review configuration that could recreate the component. Keep historical evidence preservation separate from continued collection requirements.

## Verification

Pilot the documented removal on a representative nonproduction machine. Check the actual installation and running processes, not just the extension list. For scale sets, verify the intended state across instances. Review the resulting monitoring behavior and return after several days to look for unintended reinstallation. Preserve the responsible policy or deployment evidence if the agent returns; repeating removal without addressing that source is not a completed retirement.

## Official references

[Microsoft Learn: Remove Dependency Agent](https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall). Source reviewed September 9, 2026.

## Primary reference

- Name: Remove Dependency Agent from Azure Virtual Machines and Virtual Machine Scale Sets - Azure Monitor | Microsoft Learn
- Authority: Microsoft Learn
- URL: https://learn.microsoft.com/en-us/azure/azure-monitor/vm/vminsights-dependency-agent-uninstall
- Source publication date: Not stated by the source

## Citation and use

Preferred citation: “Check installation and policy paths before declaring Dependency Agent removed,” DSE Security, https://update.dsesecurity.com/updates/dse-20260909-447-check-installation-and-policy-paths-before-declaring-dependency-agent-removed/
Publishing principles: https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/
Usage and citation policy: https://update.dsesecurity.com/usage/
Copyright © 2026 Detection Systems & Engineering. All rights reserved.
