> For the complete documentation index, see [llms.txt](https://docs.oort.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.oort.io/understanding-check-failures/oort-insights/identity-posture-management-insights/role-assigned-to-azure-cloud-only-account.md).

# Role Assigned to Azure Cloud Only Account

Detects if an account is assigned applications and permissions in Microsoft Entra ID, but not Active Directory. Because termination processes start with Active Directory, former employees can retain access to applications in Microsoft Entra ID via these disconnected accounts that exist only in Entra ID.

**Recommended Actions**

We recommend verifying why the role has been assigned to the account.

**Compatibility**

[Microsoft Entra ID](/integrations/azure-active-directory-integration.md)

<figure><img src="/files/raGzC7dBKcwFAVaN7FwU" alt=""><figcaption></figcaption></figure>

<br>
