Implications of using service auth?

We’d like to roll out WARP for our organization, but prefer users not to authenticate

We’ve got service auth to work, but I’m not sure I understand the implications of doing it this way, and not with an IdP?

Is it ‘just’ policies that scopes user emails I won’t be able to create, or is there any other implications I should keep in mind?

We have Workspace ONE MDM integration setup…