An AI Builder model or prompt owned by a disabled user
What it is
AI Builder model is owned by a disabled user account.
Why it matters
A published model keeps being callable from flows and agents regardless of its owner, while the paths that would retire or retrain it run through an account that cannot act. Models built during an experiment and never removed are the common case.
Find it yourself
List msdyn_aimodel rows with their owner and join to systemuser, filtering to disabled accounts. Exclude the SYSTEM account, which owns Microsoft's prebuilt models and is disabled by design.
How to fix it
Reassign the model in the AI hub to an active owner, preferring a service account or a team; if it is no longer used, check what still calls it, then unpublish and delete it.
No control mapping, deliberately
This is a security finding that carries no SOC 2, ISO 27001, NIST 800-53 or CMMC reference. That is a decision rather than an omission. Pathix maps a finding to a control only where the mapping is defensible to an assessor, and a stretched one would undermine every mapping that is real.
Pathix checks this across every environment you scan, along with 71 other conditions. Self-hosted in your own Azure, read-only, metadata-only.