Earlier quoted context omitted.
OP was talking about the security team. Not sure what you are proposing? Do you want to let any applicant be screened by the security team?
Any security team that gives unrestricted admin privileges to random employees is not a security team. So doing the most basic parts of their job, that would be my proposal. If specific to my hiring comment, was meant a bit facetious, though I will point out this line in their "compliance" report by "auditor" Delve: > The organization carries out background and/or reference checks on all new employees and contractors…
In my understanding restricting local admin rights would not have change anything here.
The Vercel employee signed up for Context.ai (a third-party tool) using their work account and granted it "Allow All" access to their environment.
Maybe Admin-Managed Consent would have helped prevent context.ai access the environment but this is not configured locally on the employee's machine.
It is a cloud-level setting managed within their identity provider's administrative portal.