Rule ID #
SN-AVOID-EMPTY-GROUPS
Impact #
Defining permission groups without any users leads to unnecessary system clutter, increased maintenance overhead, and potential confusion among administrators. These empty groups can create security risks if unintentionally populated later, complicate auditing and compliance processes, and and deviate from best practices in access management.
Remediation #
Deactivate the group by setting the “Active” field on the group record to “false”
Time to fix
20 min