Microsoft just this week has started to allow user accounts in Azure DevOps linked to service principals in Azure to work as an authentication piece for 3rd party systems. We have just added this for a couple of other vendors. We would like for this to be available for our ADO integration with Spacelift rather than having to rely on personal access tokens.