Have you deactivated a SSO user in your identity provider (Azure, Okta, etc...), but they still show up in Grayscale? Here are some steps that may help!
Azure (Entra)
Provisioning Logs
Navigate to the custom Grayscale Enterprise App in Azure AD
Navigate to Manage > Provisioning > View provisioning logs.
Search for the user(s) and identify if there were any errors or logs for their access being revoked