On pr to default branch create a check suite and check run which will verify that the AD group already exists and fail if it doesn't. Also emit some information in the check run result such as how many people will be added to the team once merged.