implementing-anti-ransomware-group-policy

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The provided Python script scripts/agent.py executes PowerShell cmdlets through the subprocess.run interface. This is used to audit the system's current security configuration, such as checking if AppLocker and Controlled Folder Access are enabled and reporting on the status of Attack Surface Reduction rules. The commands are hardcoded and intended for security auditing as described in the skill's documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 05:05 AM