@support2, I have my Azure/O365 tenant connected through app registration and already have that script added under a business rule. However, I can tell you that it did not strip any Azure groups from a user that we tested on Friday (9/29). The only thing it worked on was our on-prem groups that the user object was a member of.