Events
Audit coverage
Audit must answer who did what, in which scope, through which channel, and why.
Identity and registration OS bootstrap, invitations, approval, credential setup, and principal state changes.
RBAC and access reviews Permission checks, role grants, custom-role decisions, and periodic reviews.
Tenant and app operations Tenant creation, activation, app access, domain readiness, and integration changes.