Dargslan.WinSecureBootAudit

1.0.0

Audit Windows Secure Boot, UEFI keys (PK, KEK, db, dbx), TPM and BitLocker posture. Generates JSON / HTML compliance reports for Windows 10/11 and Server. Part of the Dargslan Windows Admin Tools collection — more at https://dargslan.com/

Minimum PowerShell version

5.1

Installation Options

Copy and Paste the following command to install this package using PowerShellGet More Info

Install-Module -Name Dargslan.WinSecureBootAudit -RequiredVersion 1.0.0

Copy and Paste the following command to install this package using Microsoft.PowerShell.PSResourceGet More Info

Install-PSResource -Name Dargslan.WinSecureBootAudit -Version 1.0.0

You can deploy this package directly to Azure Automation. Note that deploying packages with dependencies will deploy all the dependencies to Azure Automation. Learn More

Manually download the .nupkg file to your system's default download location. Note that the file won't be unpacked, and won't include any dependencies. Learn More

Owners

Copyright

(c) 2026 Dargslan. All rights reserved.

Package Details

Author(s)

  • Dargslan

Tags

secure-boot uefi tpm bitlocker audit compliance security windows sysadmin dargslan dfir hardening

Functions

Get-DargslanSecureBootStatus Get-DargslanSecureBootKeys Get-DargslanTpmSecurityStatus Get-DargslanBitLockerStatus Get-DargslanSecureBootAuditReport Export-DargslanSecureBootAuditReport

Dependencies

  • .NETStandard 2.0

    • No dependencies.

Release Notes

Initial release. Audits Secure Boot state, UEFI key store (PK/KEK/db/dbx), TPM 2.0 readiness, BitLocker protection status. JSON + HTML report export. Visit https://dargslan.com/cheat-sheets for the matching free PDF cheat sheet.

FileList

Version History

Version Downloads Last updated
2.0.0 20 4/14/2026
1.0.0 (current version) 4 4/18/2026