Resets a device to factory settings from Intune, with options to retain enrolment and the user account or to carry on through a power loss. Personally owned work profile devices can't be wiped this way.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Wipe in context, with comparison tables and the common traps.
Terms in this definition
- Intune
Microsoft's device management service, once branded Microsoft Endpoint Manager. Its compliance policies are what the compliant-device grant in Conditional Access relies on.
- Table options
Set only at creation with
OPTIONS, these key-value storage settings can't be altered or dropped afterwards; on Delta tables they also show up among the table properties. - Chat message roles
Labels on chat messages: instructions go under system, the person's input under user, the model's previous answers under assistant, and results returned by a called tool under tool (or function).
- Personally owned work profile
Used for bring-your-own Android devices: Intune manages a separate work area on the phone, while the owner's own apps and data remain private.
Related terms
- App selective wipe
Removes organisational data, and nothing else, from a user's or device's managed apps once the app is next launched. Conditional launch in app protection can request the same wipe.
- Bulk device actions
Lets you pick up to 100 devices in Intune (Devices > All devices > Bulk device actions) and run one remote action on all of them, whether that's a wipe, an Autopilot Reset, a restart or a sync.
- Help Desk Operator
A built-in Intune role that can assign existing apps and policies and carry out remote tasks such as Fresh Start, retire or wipe, but can't create apps or policies itself.
- Multi Admin Approval
Intune access policies requiring a second admin to sign off before a change goes through. They can protect things like apps, scripts, roles, configuration and compliance policies, as well as device wipe, retire and delete actions.
- Priority cleanup
Lets admins with the Priority Cleanup Admin role wipe specific content for good, overriding eDiscovery holds and retention. Deletion goes ahead only once other administrators approve it, and it sits within Data Lifecycle Management.
- Retire
Strips corporate data, managed apps and MDM profiles from a device while keeping personal data, which is the key difference from a Wipe in Intune.
- School Administrator
Built into Intune for Education, this role looks after the apps and settings of the groups it is given, and whoever holds it may lock, restart, retire or wipe the devices in those groups.
- Temporary disk
Local, non-managed storage on the VM's host, by default drive D: on Windows, intended for scratch data and page files. Redeployment, deallocation or maintenance can wipe what it holds.