MDEP Telemetry Events

Required Telemetry Events

Telemetry Name Usage Description
Microsoft.MDEP.OS.
BootCompleted
Indicates the device completed a boot. It reports the OS-provided boot reason, boot time, and system server startup metrics to analyze reboot causes and boot stability.
Microsoft.MDEP.OS.
CensusCollected
Indicates periodic device census information was collected. It reports build, hardware, locale, connectivity, and selected configuration attributes to track device inventory and detect OS version changes.
Microsoft.MDEP.OS.
ShellCommandExecuted
Indicates a shell command used for telemetry collection timed out or returned a non-success exit code. It reports execution timing and command details to diagnose telemetry data-collection failures.
Microsoft.MDEP.Telemetry.
Exception
Indicates a telemetry provider or provider framework encountered a handled exception. The affected service continued running, but a feature or component experienced an error condition.
Microsoft.MDEP.Telemetry.
Summary
Indicates a telemetry collection job completed. It reports overall event counts, provider execution results, and charging or network conditions to verify telemetry service operation.
Microsoft.MDEP.Watson.
FilepathFetched
Indicates the Watson upload pipeline evaluated available diagnostic files. It reports whether files were pending, submitted, removed, or rejected to diagnose upload pipeline behavior.
Microsoft.MDEP.Watson.
ReportCreated
Indicates the Watson upload pipeline created a report package for upload. It reports pending files, invalid paths, readiness, and whether an upload attempt was made to diagnose crash-report processing.
Microsoft.MDEP.Watson.
DataUploaded
Indicates data was uploaded to the Watson Data Service. This event is used to verify service operation and diagnose stability issues. It includes identifiers associated with the uploaded data.
Microsoft.MDEP.OS.
SecureBootInfo
Indicates secure boot and verified boot state were collected during device startup. It is used to monitor boot integrity and compliance status.
Microsoft.MDEP.OS.
FaultEvent
Indicates a system fault record was collected, such as an application not responding (ANR), tombstone, or kernel fault. It is used to diagnose stability and crash issues.
Microsoft.MDEP.OS.
BatteryStats.
ScreenBrightness
Indicates summarized screen brightness usage was collected from batterystats. It is used to understand display power behavior.
Microsoft.MDEP.OS.
BatteryStats.ProcessingStats
Indicates the telemetry parser recorded how many batterystats lines were processed during a collection run. It is used to verify batterystats parsing completed as expected.
Microsoft.MDEP.OS.BatteryStats.
Discharge
Indicates summarized battery discharge and power-use metrics were collected from batterystats. It is used to analyze device power consumption and idle behavior.
Microsoft.MDEP.OS.BatteryStats.
KernelWakeLock
Indicates kernel wake lock activity was collected from batterystats. It identifies kernel components that kept the device from entering its lowest power state.
Microsoft.MDEP.OS.BatteryStats.
Network
Indicates summarized network activity was collected from batterystats. It is used to analyze device power and usage associated with cellular, Wi-Fi, and Bluetooth traffic.
Microsoft.MDEP.OS.BatteryStats.
TemperatureVoltage
Indicates summarized battery temperature and voltage readings were collected from batterystats. It is used to monitor battery operating conditions.
Microsoft.MDEP.OS.BatteryStats.
WakeLock
Indicates user-mode wake lock activity was collected from batterystats. It identifies applications or processes that kept the device from entering its lowest power state.
Microsoft.MDEP.AndroidSignals Indicates a periodic set of Android health signals was collected. It reports collection status, the number of signals evaluated, and a serialized summary of the signals for diagnostics.
Microsoft.MDEP.Integrity Indicates integrity information was collected for installed Microsoft or Azure packages. It reports package version, signature, path, and checksum data to monitor software inventory and detect unexpected changes.
Microsoft.MDEP.Camera.Properties Indicates camera usage and performance metrics were collected from the native telemetry HAL. It reports camera session activity and timing data to analyze camera behavior.
Microsoft.MDEP.Boottime.
Properties
Indicates platform boot-time telemetry was collected during startup. It is used to measure boot performance and verify vendor-reported boot completion.
Microsoft.MDEP.Reset.
Properties
Indicates platform and firmware reset-reason data was collected during startup. It is used alongside boot telemetry to analyze reboot causes and diagnose stability issues.
Microsoft.MDEP.UFS.Properties Indicates diagnostic properties were collected from the device's UFS storage subsystem. It is used to monitor storage health, device configuration, and estimated remaining lifetime.
Microsoft.MDEP.PMIC.
Properties
Indicates diagnostic properties were collected from the device power-management subsystem. It is used to monitor hardware health and investigate power-related issues.
Microsoft.MDEP.Usb.Properties Indicates diagnostic properties were collected from the USB subsystem. It reports connection, power, and link characteristics to investigate USB behavior.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_message_failed
Indicates a settings synchronization message failed during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_message_failed
Indicates a Bluetooth synchronization message failed during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
AUTO_SYNC_message_failed
Indicates an automatic synchronization message failed during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_begin_autosync
Indicates an automatic settings synchronization cycle began between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_notify_autosync_completed
Indicates an automatic settings synchronization cycle completed and listeners were notified between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_update_state
Indicates Bluetooth adapter power state was updated during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_update_name
Indicates the local Bluetooth adapter name was updated during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_update_scan_state
Indicates Bluetooth discovery or scan state was updated during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_pair
Indicates a request to pair with a Bluetooth device during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_confirm_pair
Indicates a Bluetooth pairing request was confirmed during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_forget
Indicates a paired Bluetooth device was forgotten during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_connect
Indicates a request to connect to a Bluetooth device during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_disconnect
Indicates a request to disconnect from a Bluetooth device during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_remove_active_device
Indicates a Bluetooth device was removed as the active device for an audio profile during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_update_active_device
Indicates the active Bluetooth device for an audio profile was updated during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_toggle
Indicates the Wi-Fi adapter was toggled on or off during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_start_scan
Indicates a Wi-Fi scan was started during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_add
Indicates a Wi-Fi network was added or saved during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_forget
Indicates a saved Wi-Fi network was forgotten during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_disconnect
Indicates a request to disconnect from the current Wi-Fi network during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_connect
Indicates a request to connect to a Wi-Fi network during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.WIFI_auto_connect
Indicates the device automatically connected to a known Wi-Fi network during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
Device_config_notify_role_changed
Indicates the device configuration role changed and listeners were notified during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
Device_config_notify_role_changed_failed
Indicates notifying listeners about a device configuration role change failed during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.ProvisioningProviderEvent
Indicates the device provisioning service reported a provisioning result or error for a selected service provider. It is used to diagnose provider setup failures and application installation issues.
Microsoft.MDEP.Common.Diagnostic.
Trace.KeyProvisioningTelemetryEvent
Indicates the result of a key provisioning lifecycle. It aggregates status, attempt count, exception information, and identifiers associated with provisioned key algorithms to diagnose provisioning behavior.
Microsoft.MDEP.Common.Diagnostic.
Trace.AttestationTelemetryEvent
Indicates the outcome of an attestation request. It is used to diagnose attestation, certificate revocation, and service communication issues by reporting scenario, result codes, and relevant service-response metadata.
Microsoft.MDEP.Common.Health.
Point.ServiceProviderEvent
Indicates KioskLauncher detected or handled a service provider crash, recovery, update, restart, or repeated-crash reboot. It is used to diagnose service provider failures and restart behavior.
Microsoft.MDEP.Common.Usage.
Scenario.AppStartup
Indicates Device Settings recorded a startup scenario lifecycle milestone. It tracks scenario status and step progression while the app initializes and creates its user interface.
Microsoft.MDEP.PairingState Indicates the current device pairing state. It reports whether pairing is connected and whether the device is acting as the client or server.
Microsoft.MDEP.PairingService.
ConnectResult
Indicates the PairingService reported the result of transitioning into a connected state. It includes the device role, previous pairing state, and the reason for the state change to help diagnose connection flows.
Microsoft.MDEP.PairingService.
DisconnectResult
Indicates the PairingService reported the result of transitioning into a disconnected state. It includes the device role, previous pairing state, and the reason for the state change to help diagnose disconnection flows.
Microsoft.MDEP.PairingService.
PairingResult
Indicates the PairingService reported the outcome of a pairing attempt. It includes service state, device role, peer discovery, and whether directed pairing was used to help diagnose pairing behavior.
Microsoft.MDEP.PairingService.
UnpairingResult
Indicates the PairingService reported the outcome of removing an existing pairing. It includes service state and device role to help diagnose unpairing behavior.
Microsoft.MDEP.PairingService.
UncaughtException
Indicates the PairingService encountered an uncaught exception on one of its threads. It is used to diagnose service failures by reporting pairing state, device role, and exception details at the time of the error.
Microsoft.MDEP.MEMORY.Properties Indicates per-app or per-service memory usage was collected for device health monitoring. It is used to identify high-memory-consumption apps and services by reporting usage, resident memory, swap, thread count, and runtime.
Microsoft.MDEP.Common.Trace.
Diagnostic.SecurityLogTelemetryEvent
Indicates a security-related Android security-log record was forwarded for compliance monitoring. It carries serialized system and event data from the underlying security incident for audit and diagnostic use.
Microsoft.MDEP.Common.Usage.CloudAgentEvent Indicates CloudAgent recorded request metadata, status, errors, or latency for a cloud-service call. This event is used to monitor CloudAgent usage and performance.
Microsoft.MDEP.Common.Usage.
NarratorProviderEvent
Indicates Narrator usage or performance was recorded, including activation counts or average TalkBack operation time.
Microsoft.MDEP.Common.Usage.
RemoteSpeechEvent
Indicates Remote Speech usage or performance was recorded, including activation counts and synthesize-text or stop-operation latency.
Microsoft.MDEP.Common.Usage.
TtsProviderEvent
Indicates text-to-speech usage or voice-model download activity was recorded, including locale selection, offline synthesis usage, and download performance or failures.
Microsoft.MDEP.Common.Usage.
MdepUpdateManagerEvent
Indicates MdepUpdateManager recorded a USB-based update workflow event, such as USB detection, user confirmation, install actions, or package validation and installation results.

Optional Telemetry Events

Telemetry Name Usage Description
Microsoft.MDEP.OS.AppUsageStatsCollected.
Weekly
Indicates weekly application-usage statistics were collected for a single package when non-zero usage was observed.
Microsoft.MDEP.OS.AppUsageStatsCollected.
Weekly.Summary
Indicates the total number of application-usage entries returned for the weekly aggregation window.
Microsoft.MDEP.OS.DeviceStatePolled Indicates device state was polled during telemetry collection, including whether the active network connection was metered.
Microsoft.MDEP.OS.
ProcessHealthStatsCollected
Indicates per-package process health statistics were collected, including starts, crashes, ANRs, CPU time, and foreground time.
Microsoft.MDEP.OS.UidHealthStatsCollected.
Activity
Indicates activity-related per-package health statistics were collected for a package with non-zero usage, including CPU time, battery time, and user-activity counts.
Microsoft.MDEP.OS.UidHealthStatsCollected.
Bluetooth
Indicates per-package Bluetooth usage statistics were collected, such as traffic, scan activity, time, and attributed power use.
Microsoft.MDEP.OS.UidHealthStatsCollected.
Use
Indicates per-package usage statistics were collected across process visibility states and selected device features such as audio, camera, video, vibration, and wake locks.
Microsoft.MDEP.CoreCollector.
NewCoreFetched
Indicates crash details or a core dump for an application or service were collected for diagnostic analysis.
Microsoft.MDEP.DropBoxManager.Tombstone Indicates a tombstone or other crash record was collected from the device for diagnostic upload, including associated process or package metadata.
Microsoft.MDEP.OS.UidHealthStatsCollected.
Wifi
Indicates per-package Wi-Fi usage statistics were collected, such as traffic, scans, connection time, and attributed power use.
Microsoft.MDEP.SystemLoading.Pressure Indicates system pressure metrics were collected from /proc/pressure to measure CPU, memory, or I/O stall conditions.
Microsoft.MDEP.SystemLoading.Processor Indicates processor load metrics were collected from /proc/stat to measure CPU utilization.
Microsoft.MDEP.Temperature.Status Indicates device thermal sensor readings were collected, including minimum, average, and maximum temperatures.
Microsoft.MDEP.StorageEvents.
AvailableSpace
Indicates storage utilization for the system data partition was collected, including total and available space.
Microsoft.MDEP.OS.SelinuxLogs Indicates SELinux audit or violation log entries were collected when such entries were detected on the device.
Microsoft.MDEP.Permission.Change Indicates a monitored permission was added to or removed from a targeted package or service. This event is used to detect changes to sensitive platform permissions.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_message_received
Indicates a Settings synchronization message was received successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_message_akn
Indicates a Settings synchronization message was transmitted successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_message_received
Indicates a Bluetooth synchronization message was received successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_message_akn
Indicates a Bluetooth synchronization message was transmitted successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_message_received
Indicates a Wi-Fi synchronization message was received successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_message_akn
Indicates a Wi-Fi synchronization message was transmitted successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
AUTO_SYNC_message_received
Indicates an Auto-Sync message was received successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
AUTO_SYNC_message_akn
Indicates an Auto-Sync message was transmitted successfully during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
DEVICE_CONFIG_message_akn
Indicates a device-configuration synchronization message was transmitted successfully between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_sync_data
Indicates Settings data was prepared and sent for synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_processed_data
Indicates synchronized Settings data was processed on the receiving device during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_set_status_listener
Indicates a caller registered to receive Settings synchronization status updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_set_data_listener
Indicates a caller registered to receive synchronized Settings data updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_set_autosync_listener
Indicates a caller registered to receive Settings Auto-Sync status updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_remove_autosync_listener
Indicates a caller unregistered from receiving Settings Auto-Sync status updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_get_autosync_state
Indicates a caller queried the current Settings Auto-Sync state between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
SETTINGS_set_communication_state_listener
Indicates a caller registered to receive Settings communication-state updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_add_listener
Indicates a caller registered to receive Bluetooth state updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_remove_listener
Indicates a caller unregistered from receiving Bluetooth state updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_details
Indicates a request to retrieve Bluetooth adapter or device details during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_device_metadata
Indicates a request to retrieve Bluetooth device metadata during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_paired_devices
Indicates a request to retrieve paired Bluetooth device information during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_connected_devices
Indicates a request to retrieve connected Bluetooth device information during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_active_devices
Indicates a request to retrieve active Bluetooth device information during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
BLUETOOTH_request_audio_mode
Indicates a request to retrieve the current Bluetooth audio mode during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_add_listener
Indicates a caller registered to receive Wi-Fi state updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_remove_listener
Indicates a caller unregistered from receiving Wi-Fi state updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_check_enabled
Indicates a request to determine whether Wi-Fi was enabled during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_request_connected_wifi
Indicates a request to retrieve information about the connected Wi-Fi network during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_request_saved_wifi
Indicates a request to retrieve saved Wi-Fi network information during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_request_connection_info
Indicates a request to retrieve detailed Wi-Fi connection information during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
WIFI_request_link_properties
Indicates a request to retrieve Wi-Fi link properties, such as IP configuration, during synchronization between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.MDEP.Common.Diagnostic.
Trace.SynchronizationProviderEvent.
Device_config_add_lister
Indicates a caller registered to receive device-configuration role-change updates between a Touch Console (TC) and a Front of Room (FoR) device.
Microsoft.Surface.Common.Diagnostic.
Trace.ProvisioningProviderEvent.
PROVISIONING_SUCCEED
Indicates a device provisioning process completed successfully.
Microsoft.Surface.Common.Diagnostic.
Trace.ProvisioningProviderEvent.
PROVISIONING_FAILED
Indicates a device provisioning process failed. This event is used to diagnose failures in provisioning steps such as application installation, ownership changes, or settings updates.
Microsoft.Surface.Common.Diagnostic.
Trace.ProvisioningProviderEvent.
APK_INSTALLATION_FAILED
Indicates an application failed to install during device provisioning.
Microsoft.Surface.Common.Diagnostic.
Trace.ProvisioningProviderEvent.
PROVISIONING_STATE
Indicates the device provisioning workflow changed state, such as starting, installing packages, or applying settings or policies.
Microsoft.MDEP.Common.Diagnostic.
Trace.ZteTelemetryEvent.
ZTE_PROVISION_SUCCESSFUL
Indicates the Zero Touch Enrollment (ZTE) provisioning workflow completed successfully.
Microsoft.MDEP.Common.Diagnostic.
Trace.ZteTelemetryEvent.
ZTE_PROVISION_FAILED
Indicates the Zero Touch Enrollment (ZTE) provisioning workflow failed.
Microsoft.MDEP.Common.Diagnostic.
Trace.ZteTelemetryEvent.
ZTE_PROFILE_DOWNLOADED
Indicates the Zero Touch Enrollment (ZTE) workflow successfully downloaded the cloud profile used for provisioning.
Microsoft.MDEP.Common.Diagnostic.
Trace.ZteTelemetryEvent.
ZTE_FEATURE_DISABLED
Indicates Zero Touch Enrollment (ZTE) was not performed because the feature was not enabled.
Microsoft.MDEP.Common.Usage.Point.
Interaction
Indicates a user interaction with device settings or related privacy controls, such as feature clicks, toggles, or page navigation. This event is used to understand settings usage and configuration changes.
Microsoft.MDEP.Common.Usage.
OtaServiceEvent
Indicates OtaService recorded an APK or firmware update workflow event, such as invocation source, update type, package source, installation mode, or transfer, validation, and installation results.
Microsoft.MDEP.Common.Diagnostic.Trace Indicates a service emitted diagnostic trace telemetry about its operation, state transitions, or handled errors. This event family is used across multiple MDEP components to monitor reliability and investigate issues.
Microsoft.MDEP.FaultEvent Indicates the platform captured diagnostic details for a system fault such as a kernel panic, native crash, tombstone, or ANR. This event is used for reliability analysis and can include parsed fault metadata, a signature, and limited backtrace or protocol data.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
ConfigurationService.SET
Indicates Teams Partner Agent processed a request from Teams Admin Center to set device configuration values.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
ConfigurationService.READ
Indicates Teams Partner Agent processed a request from Teams Admin Center to read device configuration values.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
ConfigurationService.PATCH
Indicates Teams Partner Agent processed a request from Teams Admin Center to partially update device configuration values.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
ConfigurationService.Invalid
Indicates Teams Partner Agent received an invalid or unsupported configuration request from Teams Admin Center.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
HealthService Getlog
Indicates Teams Partner Agent processed a request from Teams Admin Center to retrieve device logs.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
HealthService.Reboot
Indicates Teams Partner Agent processed a request from Teams Admin Center to reboot the device.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
HealthService
Indicates Teams Partner Agent initiated a device reboot after processing a health-service request from Teams Admin Center.
Microsoft.MDEP.Common.Diagnostic.
Trace.PartnerAgentEvent.
HealthService.RebootResponse
Indicates Teams Partner Agent recorded the response or outcome of a reboot request from Teams Admin Center.
Microsoft.MDEP.Common.Health.
Point.BetterTogetherEvent.
lock_now
Indicates the Teams Better Together feature requested the device be locked.
Microsoft.MDEP.Common.Health.Point.
BetterTogetherEvent.unlock_now
Indicates the Teams Better Together feature requested the device be unlocked.
Microsoft.MDEP.Common.Health.Point.
BetterTogetherEvent.stay_active
Indicates the Teams Better Together feature requested the device remain awake.
Microsoft.MDEP.Common.Health.Point.
BetterTogetherEvent.go_to_sleep
Indicates the Teams Better Together feature requested the device enter sleep mode.
Microsoft.MDEP.Common.Health.Point.
BetterTogetherEvent.wake_up
Indicates the Teams Better Together feature requested the device wake up.
Microsoft.MDEP.Common.Health.Point.
EmergencyNumberEvent.dial
Indicates the emergency dialer was opened on the device.
Microsoft.MDEP.Common.Health.Point.
EmergencyNumberEvent.call
Indicates an emergency call was placed on the device. This event is used to monitor emergency-calling reliability.
Microsoft.MDEP.Common.Diagnostic.
Trace.WebserverEvent.
SERVER_LIFECYCLE
Indicates the DeviceExperienceWebServer service or HTTP server changed lifecycle state, such as create, start, stop, bind, run, or destroy.
Microsoft.MDEP.Common.Diagnostic.
Trace.WebserverEvent.
SERVER_ERROR
Indicates the DeviceExperienceWebServer encountered a server startup or runtime error. This event is used to diagnose failures while creating or operating the web server.
Microsoft.MDEP.Common.Diagnostic.
Trace.WebserverEvent.
SERVICE_CALLED
Indicates the DeviceExperienceWebServer received an HTTPS request and began processing the target endpoint and API method.
Microsoft.MDEP.Common.Diagnostic.
Trace.WebserverEvent.
REQUEST_SUCCESS
Indicates the DeviceExperienceWebServer successfully processed an HTTP request and returned an HTTP 200 response with the requested data.
Microsoft.MDEP.Common.Diagnostic.
Trace.WebserverEvent.
REQUEST_ERROR
Indicates the DeviceExperienceWebServer encountered an error while processing an HTTP request and returned a non-200 response code.
Microsoft.MDEP.Common.Diagnostic.
Trace.TranslationEvent.
SERVICE_ON_CREATE
Indicates the TranslationService was created successfully. It is used to monitor translation-service lifecycle startup.
Microsoft.MDEP.Common.Diagnostic.
Trace.TranslationEvent.
SERVICE_ON_START_COMMAND
Indicates the TranslationService received a start command and started successfully. It is used to monitor translation-service lifecycle transitions.
Microsoft.MDEP.Common.Diagnostic.
Trace.TranslationEvent.
SERVICE_ON_DESTROY
Indicates the TranslationService was stopped or destroyed. It is used to monitor translation-service lifecycle shutdown.
Microsoft.MDEP.STORAGE.Status Indicates storage utilization under /data was collected, including available space and the largest files, to monitor device storage capacity.
Microsoft.MDEP.Watson.Bugreport Indicates Watson recorded a summary of bugreport file handling or upload activity for crash diagnostics.
Microsoft.MDEP.Common.Usage.
ProjectionProviderEvent
Indicates Projection recorded usage and performance telemetry, including projection event type and message details, to monitor projection reliability and improvement.
Microsoft.MDEP.Common.Usage.
SynchronizerProviderEvent
Indicates the Pairing Synchronizer service recorded usage or exception telemetry, including synchronization event type and message details, to monitor reliability and issue resolution.