ad-security-reviewer

Assess Active Directory security posture across domains with risk scores and remediation plans.

8|11|Updated Feb 15, 2026
One-click install
npx skills add https://github.com/belokonm/claude-supercode-skills --skill ad-security-reviewer-belokonm
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: ad-security-reviewer
Source: https://github.com/belokonm/claude-supercode-skills/tree/main/ad-security-reviewer-skill
Command: npx skills add https://github.com/belokonm/claude-supercode-skills --skill ad-security-reviewer-belokonm

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires @azure/identity, @microsoft/microsoft-graph-client, isomorphic-fetch, and includes scripts (resource) and references (resource) components.

What problem does it solve?

Active Directory security posture is frequently overlooked, creating blind spots around privileged access, delegation, and authentication policy gaps. This Skill provides a structured analysis framework and actionable recommendations to identify and remediate risks across on-premises and hybrid AD deployments.

Core Features & Use Cases

  • AD security posture analysis across domains, highlighting privileged groups, delegation auditing, and risk configurations.
  • Privileged group design review, delegation auditing, and tiered access recommendations.
  • Authentication protocol hardening, GPO security review, and conditional access optimization.
  • Attack surface reduction, remediation planning, and generation of executive summaries with traceable evidence.

Quick Start

Run the AD Security Reviewer to generate an assessment report and prioritized remediation plan for your Active Directory environment.

Frequently Asked Questions about ad-security-reviewer

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit Active Directory security posture across hybrid domains?

To audit Active Directory security posture, this Skill analyzes hybrid environments by evaluating privileged groups, delegation permissions, GPOs, and conditional access policies to generate structured findings and risk scores. It provides a prioritized remediation plan with scriptable actions.

What is included in an AD privileged group and delegation review?

An AD privileged group and delegation review includes identifying privileged accounts, auditing delegation permissions, and evaluating domain trust relationships. It yields tiered access recommendations and structured findings to reduce your attack surface.

Can I use Microsoft Graph to assess on-premises AD risk signals and GPOs?

Yes, you can use Microsoft Graph alongside Azure Identity dependencies to assess on-premises and hybrid AD risk signals. The Skill evaluates GPO security configurations and conditional access to highlight policy gaps.

How do I generate an executive summary for an Active Directory security audit?

You generate an executive summary for an Active Directory security audit by running the Skill to produce traceable evidence, risk scores, and a prioritized remediation plan. It translates complex GPO and delegation findings into actionable insights.

Does this AD security reviewer work with conditional access and MFA configurations?

Yes, this AD security reviewer works with conditional access and MFA configurations by evaluating authentication protocol hardening and optimizing conditional access policies. It identifies authentication policy gaps across your hybrid deployment.