> For the complete documentation index, see [llms.txt](https://docs.oort.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.oort.io/understanding-check-failures/oort-insights/identity-posture-management-insights/user-password-expired.md).

# User Password Expired

Detects user accounts whose password is currently expired. This check identifies the account's current password-expired state. It is different from password rotation policy checks that look for long password age or missing resets over time.

**Recommended Actions**

Confirm whether the account is still needed and reset the password if access should remain active. Investigate stale, unmanaged, or abandoned accounts that remain in an expired state. For sensitive accounts, review recent activity before restoring access.

**Compatibility**

[Microsoft Active Directory](/integrations/microsoft-active-directory.md)
