Security
SIGIL
Security baseline enforcement.
Applies a standardized security and configuration baseline to a Windows machine — telemetry and privacy, UAC, firewall, autorun, password and audit policy, RDP with NLA, screen lock, and SMBv1/LLMNR/NetBIOS/LSA-PPL hardening. Select individual categories or apply all; every change is logged to CSV. Pairs with COVENANT as a post-onboarding hardening step.
Quick Launch
Run SIGIL
Run in an elevated PowerShell window. Downloads sigil.ps1
from CursedTechnocrat/TechnicianToolkit and executes it.
Set-ExecutionPolicy Bypass -Scope Process -Force; $f="$(Get-Location)\sigil.ps1"; irm https://raw.githubusercontent.com/CursedTechnocrat/TechnicianToolkit/main/sigil.ps1 -OutFile $f; [IO.File]::WriteAllText($f,[IO.File]::ReadAllText($f,[Text.Encoding]::UTF8),[Text.UTF8Encoding]::new($true)); & $f