@James Chan_110, Thanks for posting in Q&A.
For your issue, I have done some research about it, there are no related compliance settings that can specify whether a device join to a specific domain and also, compliance policy cannot drop the device to non-compliant list if it does not meet the requirements. Intune compliance policy is a set of rules and conditions that you define to ensure that devices managed by Microsoft Intune meet your organization’s security and compliance requirements.
Also, if the device does not enroll in Intune, you cannot assign compliance policy to it.
Here is a link about compliance policy settings for windows.
https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-create-windows
Thanks for your kind understanding.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.