Inactive/Terminated/Disabled AzureAD Accounts are still showing in site permissions in SharePoint Online sites

Bajracharya, Prabinesh 422 Reputation points
2022-06-06T18:23:36.627+00:00

We are still seeing Inactive/Terminated/Disabled AzureAD Accounts in site permissions in SharePoint Online sites.
How can we perform a bulk clean-up?

Microsoft 365 and Office | SharePoint | For business | Windows
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Graph
0 comments No comments
{count} votes

Answer accepted by question author
  1. RaytheonXie_MSFT 40,496 Reputation points Microsoft External Staff
    2022-06-07T02:42:50.09+00:00

    Hi @Anonymous ,
    If you have Inactive/Terminated/Disabled users from AD, when you go to SharePoint Online, you will still see those user accounts in SharePoint site permission list. It is a normal behavior. However, it doesn’t mean the user has access. This is not a security issue, and SharePoint always keeps a record of a user. You may need to delete the user from User Information List(go to http://siteUrl/_layouts/15/people.aspx?MembershipGroupId=0 and delete from there)

    For more details, you can refer to this article: How to remove deleted users from SharePoint Online


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.