Active Driectory: LAPS and BitLocker
It would be nice if SCCM could pull the LAPS passwords into a table. And while we are at it the BitLocker recovery key. These are the 2 most important things to have if an AD computer account were to get deleted for some reason. We could then limit access to the data and write reports for it. I'm assuming that the information would get updated as part of some AD info sync process. The data would need to be non-volatile in case the AD account is deleted at least the information would be in the SCCM database. Maybe also include other device info in case another PC is created with the same name.