Hi Sage Mirror
Azure Active Directory Joined (AADJ) devices don't have the ability to use the traditional GPO "Display information about previous logons during user logon." However, you can still achieve similar functionality by leveraging other Azure AD and Microsoft 365 capabilities.
You can create a solution to achieve this using Azure Functions, Logic Apps (like Marilee Turscak-MSFT mentioned) , and/or Power Automate, combined with Microsoft Graph API:
Azure AD Sign-ins: Azure AD provides sign-in logs that include information such as UserID, UserPrincipalName, Application, IP Address, Location, etc. This information is accessible via the Microsoft Graph API.
Azure Function: You can set up an Azure Function to periodically (or triggered by an event) pull the sign-in log information for a particular user using the Graph API. This function can parse the necessary information and prepare a message. The Azure Function could be triggered by a user's login event.
Microsoft Graph Notification: You could use Microsoft Graph notifications to deliver a notification to the user's device, this requires your application to have the necessary permissions and configurations to send notifications to user devices.
Email Alert: Similarly, you can use the Microsoft Graph API to send an email to the user with the last sign-in information.
Here's an example of a sign-ins request using Microsoft Graph API:
GET https://graph.microsoft.com/v1.0/auditLogs/signIns
Remember, you would need the necessary permissions to read sign-in logs.
This approach, however, requires custom development and may need regular maintenance based on the changes in the APIs and services.
As always, when you collect, process, or store any user data, make sure to comply with all relevant privacy laws and company policies.