← Back to catalog
Security

SIGIL

Security baseline enforcement.

Applies a standardized security and configuration baseline to a Windows machine — telemetry and privacy, UAC, firewall, autorun, password and audit policy, RDP with NLA, screen lock, and SMBv1/LLMNR/NetBIOS/LSA-PPL hardening. Select individual categories or apply all; every change is logged to CSV. Pairs with COVENANT as a post-onboarding hardening step.

Quick Launch

Run SIGIL

Run in an elevated PowerShell window. Downloads sigil.ps1 from CursedTechnocrat/TechnicianToolkit and executes it.

Set-ExecutionPolicy Bypass -Scope Process -Force; $f="$(Get-Location)\sigil.ps1"; irm https://raw.githubusercontent.com/CursedTechnocrat/TechnicianToolkit/main/sigil.ps1 -OutFile $f; [IO.File]::WriteAllText($f,[IO.File]::ReadAllText($f,[Text.Encoding]::UTF8),[Text.UTF8Encoding]::new($true)); & $f
Category
Security
Identifier
SIGIL
Tags
baseline, policy, hardening