powershell-security-hardening

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFECOMMAND_EXECUTIONPRIVILEGE_ESCALATIONDYNAMIC_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes various PowerShell scripts and dynamically generated command strings using the child_process.spawn method. This is the primary mechanism for its hardening and auditing functionality.\n- [PRIVILEGE_ESCALATION]: The scripts modify system-wide registry keys under HKLM:\\SOFTWARE\\Policies\\Microsoft to enforce security policies such as script block logging and constrained language mode. These operations are essential for system hardening and require administrative access.\n- [DYNAMIC_EXECUTION]: The TypeScript wrapper generates PowerShell command strings at runtime to query the system's current configuration, such as the active execution policy or session language mode.\n- [EXTERNAL_DOWNLOADS]: The skill's signing scripts and documentation reference official, well-known timestamping services for Authenticode signing, which is a standard practice for ensuring script integrity.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 08:06 AM
Security Audit — agent-trust-hub — powershell-security-hardening