skills/mukul975/anthropic-cybersecurity-skills/hardening-windows-endpoint-with-cis-benchmark/Gen Agent Trust Hub
hardening-windows-endpoint-with-cis-benchmark
Pass
Audited by Gen Agent Trust Hub on Apr 9, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The script
scripts/agent.pyexecutes PowerShell commands viasubprocess.check_outputto audit security configurations such as password policies, audit policies, and firewall states. The commands are constructed from hardcoded templates and internal constants, minimizing the risk of command injection. - [EXTERNAL_DOWNLOADS]: The skill recommends downloading documentation and GPO templates from trusted domains including
cisecurity.organdmicrosoft.comfor benchmark compliance. - [SAFE]: The skill's operations are limited to reading system configuration and generating compliance reports. No evidence of data exfiltration, credential harvesting, or unauthorized persistence mechanisms was found. The registry and system queries performed are strictly aligned with the stated purpose of endpoint hardening.
Audit Metadata