Documentation Index

Fetch the complete documentation index at: https://help.claritysecurity.com/llms.txt

Use this file to discover all available pages before exploring further.

Orphaned Users Review

Prev Next

Description: This guide explains how to limit an Orphaned User Accounts access review to one or more specific applications, instead of reviewing orphaned accounts across every application in Clarity.

Overview

The Orphaned User Accounts review type identifies inactive identities (and their inactive parent accounts) so they can be reviewed and cleaned up. Previously, this review type could only be run across all applications at once — to focus a review on a specific subset, an admin had to build the review against every application and then manually exclude every application except the ones they cared about.

An Applications field is now available when the review Type is set to Orphaned User Accounts, matching the same control already used by the Material Apps and Custom Inclusion Criteria review types. Selecting one or more applications restricts the generated review’s items to inactive identities and entitlements on those applications only.

Leaving the Applications field empty preserves today’s existing behavior — the review is generated across all applications, exactly as before.

Before You Begin

  • You’ll need Clarity Admin access to create a User Access Review.

  • Decide which application(s) you want the orphaned-account review scoped to before you start (for example, only applications tagged for a specific audit or compliance standard).

How to Configure

Step 1: Start a new User Access Review

Navigate to User Access Reviews and start creating a new review. Select the User review category, then set the review Type to Orphaned User Accounts.

Step 2: Select the application(s) to scope the review to

An Applications multi-select field now appears below Type. Select one or more applications — the generated review will only include orphaned/inactive identities tied to the applications you select.

Field

What it does

Type

Set to “Orphaned User Accounts” to enable the Applications field described in this guide.

Applications

Select one or more applications to scope the review to. Leave empty to review orphaned accounts across all applications (previous, unscoped behavior).

Exclusions → Applications

Still available and works alongside the new Applications field above — use it if you’d rather include everything except a few specific applications.

Step 3: Finish creating the review

Fill in the remaining required fields — Review Name, Default Reviewer, Frequency, Start Review On, and Business Days to Complete — then save the review template.

Notes

  • Application-based scoping and the existing Exclusions → Applications field can be used together. If an application appears in both, the exclusion wins and that application’s orphaned accounts are left out of the review.

  • If no applications are selected, the review behaves exactly as it did before this update — all applications are included.


Need help?

If you have any problems, contact your customer success team. You can also get in touch with our general support via email, open a support ticket. Our general support team is available Monday - Friday from 8:00 AM - 6:30 PM CST.