Blog Post

Microsoft Intune Blog
5 MIN READ

Expand endpoint visibility across device platforms

Shravana_Mukherjee's avatar
Mar 24, 2025

Managing and protecting endpoints across diverse operating systems has long been a challenge for IT teams. It requires separate tools, scripts, and manual processes to access critical data—these add complexity, increase risk, impact device performance, and increase operational costs. Today, Microsoft Intune is taking another step toward breaking down these barriers. It's easier than ever for IT teams to seamlessly retrieve, analyze, and act on endpoint data across Windows, macOS, iOS/iPadOS, and Android to help keep their digital estate secure —all within a single, unified platform. As part of this journey, Microsoft Intune has already introduced foundational capabilities to streamline endpoint data access—starting with Windows. With the release of capabilities like enhanced hardware inventory, single-device query using Kusto Query Language (KQL), and Microsoft Copilot assistance for real-time data retrieval, IT teams gain deeper insights and can take faster actions. Building on this foundation, new capabilities are coming soon to further enhance IT visibility and control.

Coming in May 2025

  • Enhanced hardware inventory expansion – Collect and access richer hardware data across macOS, iOS/iPadOS, and Android in Resource explorer, refreshed every 24 hours.
  • Cross-platform device query – Run multidevice inventory queries across macOS, iOS/iPadOS, and Android to detect trends, identify issues, and optimize performance.

Available in public preview in March 2025

  • Copilot-assisted KQL queries – Use natural language input to quickly generate and refine KQL queries for Windows troubleshooting, with future support for other platforms.

Expand enhanced hardware inventory across platforms

In May 2025, Microsoft Intune will expand enhanced hardware inventory beyond Windows to macOS, iOS/iPadOS, and Android, delivering a unified, cross-platform solution for device visibility.

With this expansion, admins can collect and view a greater number of hardware properties across platforms. Using the Properties catalog profile policy functionality, admins can specify which properties to collect, apply the policy to specific device groups or all devices, and then access the data in Resource explorer within approximately 24 hours.

This streamlined approach ensures that only changes since the last collection are uploaded, minimizing network impact while providing up-to-date hardware inventory information.

By bringing this previously Windows-only capability to macOS, iOS/iPadOS, and Android, IT teams can now apply the same familiar workflow across platforms—eliminating separate tools and manual workarounds. The result? Greater consistency, efficiency, and control over the entire endpoint ecosystem.

Resource explorer view for Android inventory data.

Analyze trends, detect issues at scale across platforms

With enhanced device inventory now expanding across platforms, IT teams have a more complete and structured dataset to work with no matter which OS they manage. But visibility alone isn't enough—IT teams need a way to efficiently query and analyze this data at scale.

Earlier this year, Intune introduced the ability to query cached hardware inventory data for multiple Windows endpoints, enabling IT to retrieve and analyze critical data based on specific properties at scale. In May 2025, Intune will expand these powerful Device query capabilities to macOS, iOS/iPadOS, and Android, bringing the same level of visibility and control to all managed endpoints through Microsoft Intune Advanced Analytics.

Admins will be able to query inventory data across multiple devices and platforms directly from the Intune admin center. This makes it easier to spot trends, detect widespread issues, and proactively address performance bottlenecks—all within a single, streamlined workflow.

For example, an IT admin who wants to identify devices that have not yet been upgraded to iOS 18 with the most current security patches can now run a query that retrieves all those devices along with their model information. This insight will help admins determine how many of these devices are models that can't be upgraded to iOS 18, allowing IT teams to plan accordingly and mitigate potential compatibility issues to reduce risks.

Query iOS device inventory data in Intune admin center.

Simplify query experience with Microsoft Copilot in Intune

As IT environments become more complex, efficient retrieval of the right data becomes even more critical. KQL is a powerful way for admins to retrieve endpoint data, helping them diagnose issues, assess device health, and optimize performance. To make it even easier for IT admins to create effective, precise queries, Intune is introducing Copilot assistance for querying multiple device inventory data. This is now  available in public preview for Windows , with plans to expand to other platforms in the future.

With Copilot integrated into Device query capability, you can input your question about device data in natural language. As long as Device query has the data available to answer it, Copilot helps you create the KQL query you need to get the data you're looking for. You will also get an explanation from Copilot about queries that it generates for you.

With Copilot at your side, it's easier than ever to use Device query in Intune to find the data you're searching for to get the job done.

Create KQL query to investigate Windows endpoints inventory data with Copilot.

Simplifying endpoint management today and beyond

Microsoft Intune is transforming endpoint management to make it easier for IT admins to access the data they need, analyze it efficiently, and take action—all within a single, unified platform. With each advancement—from enhanced hardware inventory to advanced querying capabilities—Intune is steadily evolving toward a more intuitive, data-driven platform. As these innovations continue, IT admins will have even greater access to insights, making it easier to manage and secure their endpoints with confidence.

Copilot in Intune is at the core of our strategy to innovate at the speed of AI across all endpoint management workloads such as policy guidance, risk analysis, and troubleshooting. For Microsoft Surface device management, Copilot can assist with troubleshooting, summarize warranty status, and provide best practices to maximize device performance from the Intune admin center. For organizations that use Intune Endpoint Privilege Management to reduce the risk of local admins on Windows devices, Copilot can help with app risk analysis by providing IT teams with more insight to proactively assess security risks and enforce least privilege access more effectively.

These advancements are just the beginning. Intune is continuously evolving its data platform, removing complexity to make IT admins' jobs easier. Whether it's seamless data access, real-time analysis, or automation, Intune is shaping the future of endpoint management—where data isn't only available but also truly actionable. Read the Intune and Windows security blog to learn about additional Intune enhancements.


Learn more about the innovations designed to help your organization protect data, defend against cyber threats, and stay compliant. Join Microsoft leaders online at Microsoft Secure on April 9. Being secure is the first step towards AI innovation. Learn how to harden your defenses by exploring new AI-first tools, demos, and best practices. Register now.


Stay up to date! Bookmark the Microsoft Intune Blog and follow us on LinkedIn or @MSIntune on X to continue the conversation.

Updated Mar 21, 2025
Version 1.0

1 Comment

  • AndrewHoffman's avatar
    AndrewHoffman
    Copper Contributor

    Why is copilot for Intune baked into Security copilot? I'm already paying for a copilot user license, and purchasing SCU's are not worth it for me as I have no other use for them and have no plans to use any other Microsoft security products. It's unfortunate, because I can't take advantage of copilot in Intune at all.