Key Takeaways
- Microsoft Intune notification templates automatically inform users when their devices become noncompliant.
- Notification templates can be reused across multiple compliance policies.
- A notification template alone does not send emails; it must be associated with a compliance policy through Actions for noncompliance.
- Notifications help users remediate compliance issues quickly, reducing help desk requests and improving security.
Let’s check How to Configure Notifications for Noncompliant Devices in Microsoft Intune. In this post, you will also learn how to create notifications in Intune Admin portal for Noncompliant Devices. Compliance policy configuration is an important design decision while managing devices with Intune. Intune compliance policies are the first step of the protection before providing access to corporate applications, along with Conditional Access policies.
Table of Contents
Table of Contents
How to Configure Notifications for Noncompliant Devices in Microsoft Intune
Microsoft Intune allows administrators to notify users when their devices become noncompliant with organizational security requirements. Notification message templates help users understand why their device is marked as noncompliant and provide guidance to resolve the issue.
When a device is evaluated as noncompliant, administrators can configure automated actions such as sending email notifications, marking the device as noncompliant immediately, or blocking access through Conditional Access policies.
- Configure Device Enrollment Notifications in Microsoft Intune
- Send Custom Notifications To Users Using Intune MEM Portal
- Intune Win32 App Deployment Toast Notification | User Experience
- Intune Company Portal Branding Customization Options
Send Notifications for Noncompliant Devices in Intune
Sign in to the Microsoft Intune admin center using an account with the appropriate administrative permissions, such as Intune Administrator. After signing in, expand the left navigation pane and select Devices.
- Sign in to the Microsoft Intune admin center
- Select Endpoint security > Device compliance

Under Devices, choose Compliance, and then select Notifications. The Notifications page displays all existing noncompliance notification templates that are available in your Intune tenant. From the Notifications page, click Create notification to launch the Create a noncompliance notification wizard. This wizard guides you through configuring the notification template by specifying the template name, email branding, notification message templates, scope tags, and review settings.
- Once the template is created, it can be associated with one or more compliance policies to automatically send email notifications whenever a user’s device is marked as noncompliant.

Basic Tab
On the Basics page of the Create a noncompliance notification wizard, enter a meaningful Name for the notification template. Using a descriptive name, such as Non Compliance Notifications it, helps administrators easily identify the template when multiple notification templates are available in the Intune admin center. After entering the notification name, verify that it accurately reflects its intended purpose.
- Once you have specified the notification template name, click Next to continue. T

Header and Footer Settings
The Header and footer settings page lets you customize the branding that appears in notification emails sent to end users. These settings use your organization’s branding configured under Tenant administration > Customization in Microsoft Intune. You can choose to display your company logo in the email header and include the company name and contact information in the footer, creating a more professional and recognizable notification.
Review each available option and enable or disable it according to your organization’s requirements. If branding has already been configured in the tenant customization settings, the selected company logo and organizational details will automatically appear in the notification email. After reviewing the settings, click Next to proceed to the notification message configuration.
| Header and Footer Settings | Information |
|---|---|
| Email header | Include company logo (default = Enable) – The logo you upload as part of the Company Portal branding is used for email templates. |
| Email footer | Include company name (default = Enable) |
| Email footer | Include contact information (default = Enable) |
| Company Portal Website Link | (default = Disable) – When set to Enable, the email includes a link to the Company Portal website. |

Notification message templates
On the Notification message templates page, click + Add to create a new notification message. A single notification template can contain multiple localized messages, allowing organizations to send notifications in different languages based on the user’s preferred locale. After clicking Add, the Add row window opens where you can configure the notification message details.

In the Add row window, select the appropriate Locale, enter the Subject for the email, and provide the Message that users will receive when their device becomes noncompliant. You can enable the Raw HTML editor if you want to create a formatted email using HTML.
If this will be the primary notification language, enable Set to default locale before clicking Save. Once saved, the notification message is added to the template, and you can repeat the process to create additional localized messages if required. After all notification messages have been added, click Next to continue to the remaining configuration steps.
- On the Notification message templates page, configure one or more messages.
- Before continuing, you must select the checkbox for Is Default for one of the messages. For each message, specify the following details:
- Locale– English
- Subject – The maximum number of characters for the Subject is 78.
- Message body text – The maximum number of characters for the message body text is 2000.

What is Scope Tag
Scope tags are filtering options provided in Intune to ease the admin jobs. In the scope tag section, you will get an option to configure scope tags for the rules. Click on Next.

Under Review + create, review your configurations to ensure the notification message template is ready to use. Select Create to complete the creation of the notification.
A notification will appear automatically in the top right-hand corner with a message. You can see that the Notification message template successfully created. The template is displayed in the list of Compliance policies Notifications.

Configure Actions for Noncompliance in the Compliance Policy
You can start creating compliance policies from the Intune admin center portal. The Devices Node and from the Endpoint Security node. The following steps will Create Intune Compliance Policy for Windows. After you have created a noncompliance policy, you can set an action to take place with the device is out of compliance. Select your Windows compliance policy from the list.
In the Windows compliance policy overview pane, select Properties. Next to the Action for noncompliance section, click Edit. This section of the compliance policy settings for Windows devices and Cloud PC + Azure Virtual Desktop persistent single session devices. The default value I put in is 1 day, but you can change it to 4 hours or 5 days as per your requirement.
- After creating the notification template, you must associate it with a device compliance policy to enable email notifications.
- In the Microsoft Intune admin center, navigate to Devices > Compliance policies, select the required compliance policy, and open Properties.

In the Action drop-down box, select Send email to end users. In the Schedule (days after noncompliance drop-down box, select 0. Under Message template, click None selected to display the Notification message templates pane.
Click the template you created earlier in this topic, and then click Select to select the message template. Click Review + save to save your compliance policy.

End Result
The following shows an example email sent when the device is non-compliant. Emails sent from Microsoft to added recipients from the following sender email address:
- Email address: microsoft-noreply@microsoft.com
- Display name: Microsoft
These emails include a Microsoft Endpoint Manager prefix in the subject line. Here’s an example: Microsoft Endpoint Manager: Your device is non-compliant. You can also edit a Notification template that was previously created.

Verify and Manage the Notification Template
After creating the notification template, return to Devices > Compliance > Notifications in the Microsoft Intune admin center. The newly created template appears in the list, where you can verify its Display name, Last modified date, and assigned Scope tags. You can also use the Search box to quickly find a specific notification template. To manage the template, click the 3-dot menu next to the notification template. From the available options, you can select Delete to permanently remove the template if it is no longer required.

Need Further Assistance or Have Technical Questions?
Join the LinkedIn Page and Telegram group to get the latest step-by-step guides and news updates. Join our Meetup Page to participate in User group meetings. Also, join the WhatsApp Community and the WhatsApp channel to get the latest news on Microsoft Technologies. We are there on Reddit as well
Author
About Author – Jitesh, Microsoft MVP, has over six years of working experience in the IT Industry. He writes and shares his experiences related to Microsoft device management technologies and IT Infrastructure management. His primary focus is Windows 10/11 Deployment solution with Configuration Manager, Microsoft Deployment Toolkit (MDT), and Microsoft Intune.


does this work for anyone? because I do not receive any email with the “email preview” button or or devices registered with my email
The added email recipients receive notification automatically once they click on Email Preview. It may take some time to deliver the emails.
Hi Jitesh – Is it possible to send email notification to Admin instead of the END users?
Hi Ravi, You can specify the email ID of Admins whom you want to be part of email recipients. The end users will receive an email when you configure the option, along with Admins.
Hello,
how often will user receive the email notification?
Maybe every couple days, for example?
Does it depend on how long computer is online?
Thanks