Hello,
Based on my understanding Microsoft will report on leaked credential if your accounts are cloud only or if the password hash sync is enabled :
https://learn.microsoft.com/en-us/azure/security/fundamentals/steps-secure-identity#:~:text=The%20Users%20with%20leaked%20credentials,sites%20that%20are%20later%20breached.
"Microsoft finds many of these leaked credentials and will tell you, in this report, if they match credentials in your organization – but only if you enable password hash sync or have cloud-only identities."
Regards,