When licensed and enabled, RapidIdentity SafeID creates and maintains a system-delegation of Compromised Accounts.
RapidIdentity user accounts automatically appear in the Compromised Accounts delegation when the SafeID scanning service sets the idautoPersonSafeIdCompromisedDate attribute after detecting that the account's email and password have been found in one or more data breaches.
The Compromised Accounts delegation provides several actions that RapidIdentity Administrators can use to notify and remediate compromised accounts.
To export and share the list of Compromised Accounts with other administrative users, download and install the SafeID Connect Project into RapidIdentity Connect and schedule or simply run the Compromised_Accounts_Export action set.