ScaryByte WINSECMON - WINSECMON-v3.0.0
======================================
Version : v3.0.0        Built (UTC): 2026-07-02T09:22:19Z
Coverage: 244 checks across 20 domains
Package hash (SHA-256): 997B85F469C6307282FAD19FD95AF32DB2084E3BEFB271D6C42E0A9A6BA8EF0B

WHAT THIS IS
------------
A complete, standalone copy of WINSECMON. Everything needed to run is inside this
folder - you do not need to install anything or have the source code.

DIGITALLY SIGNED BY A TRUSTED PUBLISHER
---------------------------------------
WINSECMON and its scripts are code-signed by SCARYBYTE (PTY) LTD using a publicly
trusted SSL.com OV code-signing certificate. Windows recognises the publisher
automatically - there is nothing to install and no certificate to import.

HOW TO RUN (one click)
----------------------
1. Open the 'package' folder.
2. Double-click  WINSECMON.exe
   - It asks for administrator rights (click Yes) so the assessment is thorough.
   - It runs a READ-ONLY security assessment and opens an HTML report when done.
   If your policy blocks downloaded executables, double-click WINSECMON.cmd instead
   (same result, no .exe).

WHERE REPORTS GO
----------------
Reports are written to:  %ProgramData%\ScaryByte\WINSECMON\reports

LEARN MORE
----------
  - docs\SCANNER-PERMISSIONS.md     - privileges the scan uses and why.
  - docs\CHECK-CATALOG.md           - the full list of checks performed.
  - docs\FALSE-POSITIVE-HANDLING.md - how to interpret and suppress findings.
  - docs\FORENSIC-EVIDENCE-MODEL.md - how evidence and integrity are recorded.
  - docs\RELEASE-NOTES.md / docs\KNOWN-ISSUES.md (bundle root) - this release.

SAFETY
------
WINSECMON is READ-ONLY. It assesses posture and writes reports/logs only; it makes
no changes to the machine. No credentials are captured and nothing is sent anywhere.
