You can identify service accounts that are no longer in use by checking the last_authenticated_at field.
Before you begin
You have the service_account:read permission in the target project, or you are a project administrator.
About this task
Regularly reviewing unused service accounts reduces the attack surface of your automation orchestrator deployment. You can disable or delete service accounts that have never authenticated or have not authenticated recently.