Skip to content

Recent releases

Recent releases

The 6 most recent releases are listed below. For older versions, see the release archive.

Version 67.0 June 7, 2026

Release Date: June 7, 2026
AppSource Version: 1059

  • Migrated Compliance Policy State and Compliance Policy Setting State data collection to the Microsoft Intune Export API to improve reliability and support larger datasets.
  • Added a new relationship between the Compliance Policy and Compliance Policy Setting objects, allowing compliance settings to be viewed in the context of the policy that configured them.
  • Updated the Device Compliance Settings page by adding Policy Name to the main table, filter pane, and drill-through pane.
  • Updated the Device Compliance page by adding Policy Name to the drill-through pane.
  • Renamed semantic model parameter AzureAD Export URL Wait (s) to AzureAD Export URL Post Wait (s) (Default: 1 second). See the Important Notes section.
  • Added new parameter AzureAD Export URL Get Wait (s) to the semantic model (Default: 1 second). This parameter controls the delay between Export API status checks during sync.
  • Added new parameter AzureAD Compliance Policy State Enable to the semantic model (Default: True). This parameter controls whether Compliance Policy State data is collected during sync.
  • Renamed semantic model parameter AzureAD Export URL Wait (s) to AzureAD Export URL Post Wait (s). This is a breaking change. Custom reports, documentation, or automation referencing the previous parameter name must be updated.
  • Always back up your custom reports before upgrading.

BI for Intune v67 expands compliance reporting capabilities by introducing a relationship between Compliance Policy and Compliance Policy Setting data. This enhancement makes it easier to understand which settings are configured within a specific compliance policy and provides additional context when reviewing compliance configurations.

This release also enhances the Device Compliance and Device Compliance Settings pages with Policy Name filtering and drill-through capabilities, making it easier to analyze policy-specific compliance data.

In addition, compliance reporting data has been migrated to the Microsoft Export API and new semantic model parameters have been added to provide greater control over synchronization behavior and Compliance Policy State data collection.


Version 66.0 May 10, 2026

Release Date: May 10, 2026 AppSource Version: 1058

  • Updated handling for the Microsoft Intune Export API DeviceInstallStatusByApp endpoint to address intermittent synchronization failures caused by incomplete API responses.
  • Fixed an issue that could cause synchronization failures with the following error message: We cannot convert the value null to type Text.. Microsoft.Data.Mashup.ErrorCode = 10277
  • Resolved a condition where the Microsoft Intune Export API returned a status of Completed while the export URL value was unexpectedly returned as null.
  • Added additional validation logic to ensure a valid export URL is present before processing completed export jobs.
  • N/A
  • This issue was caused by unexpected behavior from a Microsoft Intune API response associated with application deployment status exports.
  • Customers experiencing intermittent synchronization failures related to application deployment status data should update to this release as soon as possible.
  • Always back up your custom reports before upgrading.

BI for Intune v66 hardens the application deployment status sync against a Microsoft Intune Export API edge case. When the DeviceInstallStatusByApp export occasionally completed with a null export URL, sync jobs would fail mid-run. The new validation logic catches the null URL case and the updated handling clears the error message customers were seeing (Microsoft.Data.Mashup.ErrorCode = 10277).

If you’ve seen intermittent sync failures on application deployment data, this release resolves them.


Version 65.0 Feb. 21, 2026

Release Date: February 21, 2026 AppSource Version: 1057

  • Added new object User Sign-Ins Auth Details to provide expanded visibility into authentication activity and sign-in requirements.
  • Added new fields to the User Sign-Ins Auth Details object: Authentication Date, Authentication Date (Days), Authentication Method, Authentication Method Detail, Requirement, Result Detail, Succeeded.

BI for Intune v65 introduces expanded authentication reporting capabilities. This release adds the new User Sign-Ins Auth Details object, providing deeper visibility into authentication methods, requirements, and outcomes.

These enhancements support improved investigation and reporting of user sign-in activity across your environment.


Version 64.0 Feb. 15, 2026

Release Date: February 15, 2026 AppSource Version: 1056

  • Updated the Configuration Policy data to ensure all policy types are properly displayed, including Elevation settings policy and Local user group membership.
  • Updated the Windows Protection data source for improved reliability and completeness.
  • Added new fields to the Device Info page: OS Quality Update Version, OS Quality Update Release Date, and OS Quality Update Type to improve visibility into Windows servicing status.
  • Updated the Windows Protection page filters by removing Filter by ATP Status and adding Filter by MDE Onboarding Status.
  • Added new fields to the User object: Last Interactive Sign-In, Last Interactive Sign-In (Days), Last Non-Interactive Sign-In, Last Non-Interactive Sign-In (Days), Last Successful Sign-In, Last Successful Sign-In (Days).
  • Updated the Group object to include Distribution as a supported Group Type.
  • Added Risk State and Risk Level to the Sign-Ins page main table and added related filters to improve visibility into sign-in risk posture.
  • Added new object User Risk to provide visibility into user risk posture and remediation status.
  • Added new page Risky Users to support reporting on Microsoft Entra ID risky users.
  • Resolved an issue where some Configuration Policy types were not appearing in reports.
  • Removed object Windows Defender ATP and associated fields: ATP Compliant, ATP Conflict, ATP Error, ATP Non Compliant, ATP Not Applicable, ATP Not Assigned, ATP Remediated, ATP State, ATP Status, ATP Unknown.
  • Added new fields to the Windows Protection object: Critical Failure, MDE Can Be Onboarded, MDE Failed, MDE Insufficient Info, MDE Not Onboarded, MDE Onboarded, MDE Onboarding Status, MDE Sensor State, MDE Unsupported, Pending Full Scan, Pending Manual Steps, Pending Offline Scan, Pending Reboot, Tamper Protection Enabled.
  • Added new object User Risk with fields: Risk Lasted Updated, Risk Lasted Updated (Days), User Risk Count, User Risk Level, User Risk Level Hidden, User Risk Level High, User Risk Level Low, User Risk Level Medium, User Risk Level None, User Risk Level Unknown Future Value, User Risk State, User Risk State At Risk, User Risk State Confirmed Compromised, User Risk State Confirmed Safe, User Risk State Dismissed, User Risk State None, User Risk State Remediated, User Risk State Unknown Future Value.
  • Added new fields to the User Sign-Ins object: Sign-In Risk Level, Sign-In Risk Level Hidden, Sign-In Risk Level High, Sign-In Risk Level Low, Sign-In Risk Level Medium, Sign-In Risk Level None, Sign-In Risk Level Unknown Future Value, Sign-In Risk State, Sign-In Risk State At Risk, Sign-In Risk State Confirmed Compromised, Sign-In Risk State Confirmed Safe, Sign-In Risk State Dismissed, Sign-In Risk State None, Sign-In Risk State Remediated, Sign-In Risk State Unknown Future State.
  • [Action Required] This version requires an additional Microsoft Graph permission to be added to the app registration in Microsoft Entra ID. Please add IdentityRiskyUser.Read.All. Without this permission, the Risky Users page and related sync processes will not populate properly. Update your installation documentation to include this permission.
  • Removed the Windows Defender ATP object. Custom reports referencing ATP fields must be updated to use Windows Protection fields.
  • Microsoft Graph API instability (HTTP 503 / 504) continues to affect some tenants intermittently. The new AzureAD Application Assignment Enable parameter provides a temporary workaround. Please contact us if you have this issue — additional support cases opened with Microsoft will help prioritize a fix.
  • Always back up your custom reports before upgrading.

BI for Intune v64 introduces expanded Microsoft Defender for Endpoint and Microsoft Entra ID risk visibility. This release adds the new User Risk object and Risky Users page, providing insight into user risk posture and sign-in risk state. It also enhances Windows Protection reporting with additional onboarding and sensor status fields.

Improved sync reliability and updated policy reporting ensure more accurate visibility across devices and users.

This release requires a new Microsoft Graph permission for user-risk reporting; see Important Notes.


Version 63.0 Jan. 8, 2026

Release Date: January 8, 2026 AppSource Version: 1055

  • Added Endpoint Security Configuration Policy types to the data model. Policy types include:
    • App and Browser Isolation
    • App Control for Business
    • BitLocker
    • Microsoft Defender Antivirus
    • Endpoint Detection and Response
    • Windows Firewall
    • macOS FileVault
  • Extended the data model to include Endpoint Security Configuration Policy objects.
  • Microsoft Graph API instability (HTTP 503 / 504) continues to affect some tenants intermittently. The AzureAD Application Assignment Enable parameter (added in v61) provides a temporary workaround. Please contact us if you encounter this — additional support cases opened with Microsoft will help prioritize a fix.
  • Several customers have recently reported upgrade failures resulting in the loss of their custom reports. Always back up your custom reports before upgrading.

BI for Intune v63 brings additional Configuration Policy type data into the semantic model, covering Endpoint Security policy types such as App and Browser Isolation, App Control for Business, BitLocker, Microsoft Defender Antivirus, Endpoint Detection and Response, Windows Firewall, and macOS FileVault.


Version 62.0 Jan. 4, 2026

Release Date: January 4, 2026 AppSource Version: 1054

  • Windows devices managed by MAM-WE now display a friendly Device Type of Windows instead of 1.
  • Added a new data source: Windows Distribution Report.
  • Added new fields to the Device category, sourced from Windows Distribution Report:
    • Device Tag
    • OS Build Number
    • OS Build Revision
    • OS Quality Update Release Date
    • OS Quality Update Release Date (Months)
    • OS Quality Update Type
    • OS Quality Update Version
    • WU Distribution Enrolled
  • OS Release ID in the Device category is now populated by Windows Distribution Report data.
  • Added a new Device Tag category to the model with a new Tag field. (Populated only for Windows devices.)
  • Updated the Device Info page with new fields: OS Quality Update Version, OS Quality Update Release Date, and OS Quality Update Type.
  • Added new Device fields sourced from the Windows Distribution Report: Device Tag, OS Build Number, OS Build Revision, OS Quality Update Release Date, OS Quality Update Release Date (Months), OS Quality Update Type, OS Quality Update Version, WU Distribution Enrolled.
  • Repointed OS Release ID in the Device category to the Windows Distribution Report source.
  • Added a new Device Tag category with the Tag field. (Populated only for Windows devices.)
  • Microsoft Graph API instability (HTTP 503 / 504) continues to affect some tenants intermittently. The AzureAD Application Assignment Enable parameter (added in v61) provides a temporary workaround. Please contact us if you encounter this — additional support cases opened with Microsoft will help prioritize a fix.
  • Several customers have recently reported upgrade failures resulting in the loss of their custom reports. Always back up your custom reports before upgrading.

BI for Intune v62 adds the Windows Distribution Report data source, providing greater detail about installed Windows versions, including build number, build revision, quality update version and release date, and a new device-tag category for Windows devices.