// HARDEN // DETECT
GPO Security Auditor
Paste Get-GPPermission, GPO report XML, or gpresult /H output to flag non-admin GPO write rights on privileged OUs, missing Credential Guard, LSASS PPL gaps, disabled PS logging, and Default Domain Policy tampering — offline.
⬡
Paste GPO permission or audit data
Run the collection commands below, paste the results, and get a hardening checklist with operator paths and remediation. Nothing leaves your browser.