We like the ability to create resources in our target systems for which we can dynamically determine entitlements. Like in the dynamic permission feature: https://helloid.canny.io/provisioning/p/dynamic-permissions-powershell-target-system
This feature should contain a mechanism to create an AD group or other resource-based on all contract information before the memberships for the group can be assigned. This should not only work with AD groups but other resources therefore we need support in our PowerShell target connector.