Don't they have to? They don't know what every company is actually doing with the Enterprise certs.
I would not be surprised if the list of apps that a user has is not disclosed to Apple, and the only thing that is exchanged is Apple's "blacklist" of revoked certificates.