Microsoft Entra ID Governance
Governance

Microsoft Entra Id Governance Licensing For Guest Users

In brief

The licensing table now covers guests disabled or deleted by lifecycle policies, sponsor attestations, and users sponsoring new guests. It also lists the related beta API endpoints for attestation and sponsorship.

What Entra admins need to know

Administrators managing guest lifecycle workflows can use the expanded entries to identify the documented actions and endpoints. No required action is stated.

This editorial summary was generated by AI from the documentation changes. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

| Entitlement Management | Directly assign any identity | Bill on successful request creation when using directly assigning an access package to a user not yet in the directory.

API
https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/assignmentRequests when using requestType "AdminAdd" for a user who doesn’t exist in the directory. | Entitlement Management invites external user. | | Entitlement Management |Mark guest as governed | Bill on conversion to governed user.

API
https://graph.microsoft.com/beta/identityGovernance/entitlementManagement/subjects where "subjectLifecycle" is set to "governed". | Update access package user lifecycle. | | Lifecycle Workflows  | Workflow is run for guest | Bill on workflow execution.
API
https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/workflows/{workflowId}/activate | Workflow execution started for user. | | Lifecycle Workflows | Guest is disabled by a Guest Lifecycle Policy | N/A | Guest user disabled by lifecycle policy | | Lifecycle Workflows | Guest is deleted by a Guest Lifecycle Policy | N/A | Guest user deleted by lifecycle policy | | Lifecycle Workflows | Sponsor attests to a guest user (extends sponsorship) | POST /beta/users/{guestUserId}/microsoft.graph.identityGovernance.attest | Attest guest user | | Lifecycle Workflows | User sponsors a new guest user | POST /beta/users/{guestUserId}/microsoft.graph.identityGovernance.addSelfAsSponsor | Sponsor guest user | | Access Reviews  | Access Review – machine learning assisted access reviews | Bill when guest user is included in review.

API
https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/definitions where recommendation settings are enabled in a group review. | Decision item summary. | | Access Reviews  | Access Review – inactive users | Bill when guest user is included in review.

API
https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/definitions where inactive guest reviews are included in the policy for a group resource. | Decision item summary. |

Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…