It would be nice to have a trigger that can check if (AD or any other application) accounts have not been used for some time (i.e. 3 months), so we can take action (like disable that account and mail a manager or HR to check if person is still working for the company)
Right now we do have a delegated report that report the inactive account (or accounts that have been created some time ago, but never logged on), but we need to run this manually.
Having a trigger can automate this.
Goal is to disabled and secure the application/network if accounts have not been used for some time (or maybey the HR systeem forgot to offboard the person).