auditing-azure-active-directory-configuration

Pass

Audited by Gen Agent Trust Hub on Mar 15, 2026

Risk Level: SAFEDATA_EXFILTRATIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [DATA_EXFILTRATION]: The scripts/agent.py script and the workflow in SKILL.md extract directory configuration, including Global Administrator lists, sign-in logs, and Conditional Access policies. This sensitive identity data is saved to a local JSON file (azure_ad_audit.json) for review.
  • [COMMAND_EXECUTION]: The SKILL.md documentation provides comprehensive PowerShell and Azure CLI commands for interacting with Microsoft Entra ID, facilitating manual security audits and configuration reviews.
  • [EXTERNAL_DOWNLOADS]: The skill references official Microsoft modules (Microsoft Graph PowerShell SDK, azure-identity) and well-known open-source security tools like ScoutSuite, PingCastle, and BloodHound AD.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 15, 2026, 03:55 PM