exclude subidentities from compliance rule

Hello everyone!


I have created a compliance rule that is violated if the AD account of each primary identity has groups that meet certain characteristics. I note that the rule correctly identifies the identities that violate the rule, but on the web portal, if I click on “Resolve rule violations,” among the groups causing the violation, there are many that belong to the AD account of the sub-identities of the identities that generate the violation. Do you know if there is a way to exclude subidentities and their entitlements from compliance rules? My goal is to see only the groups that cause the violation and belong to the main identity and not to its subidentity in the “Resolve rule violations” section.

Thank you