{"adoption": {"forks": 288, "observed_at": "2026-08-28T04:05:08.021209+00:00", "stars": 1588}, "canonical_url": "https://ross.abutalabs.com/products/windows-secure-host-baseline", "card": {"archived": true, "artifact_type": "infra-config", "description": "Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber", "domain": ["security", "windows", "legal", "developer-tools"], "enriched": true, "function": ["configuration-management", "security"], "health_score": 10, "homepage": null, "language": "HTML", "license": "NOASSERTION", "license_family": "other", "maturity": "maintenance", "member_repos": ["nsacyber/Windows-Secure-Host-Baseline"], "name": "nsacyber/Windows-Secure-Host-Baseline", "platform": ["windows"], "pushed_at": "2022-12-24T16:24:21+00:00", "repo": "nsacyber/Windows-Secure-Host-Baseline", "stars": 1588, "tags": ["group-policy", "dod", "hardening", "windows-10", "windows-server-2016", "applocker", "nessus", "compliance-guidance", "auditing"], "topics": ["windows", "windows-10", "group-policy", "nessus", "windows-server", "windows-server-2016", "chrome-browser", "adobe-reader", "applocker", "certificates", "compliance", "auditing", "internet-explorer", "microsoft-office", "windows-firewall", "audit"], "urls": [], "use_cases": ["harden windows 10 with group policy", "apply DoD secure host baseline settings", "audit windows server 2016 compliance", "configure applocker and windows firewall policies", "generate nessus audit files for windows compliance"], "what_it_is": "NSA's Windows Secure Host Baseline provides configuration guidance and automation for deploying hardened Windows 10 and Windows Server 2016 per DoD security requirements. It includes Group Policy objects, compliance tooling, and settings for applications like Chrome, Adobe Reader, and Microsoft Office.", "when_to_avoid": ["hardening Windows 11 or newer Windows Server versions", "non-Windows operating systems", "needing actively updated baselines for modern Windows releases"], "when_to_choose": ["deploying Windows 10/Server 2016 in DoD or government environments", "needing authoritative hardening baselines with GPOs and audit content", "building organizational Windows security configuration from a proven framework"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/windows-secure-host-baseline", "repo": "nsacyber/Windows-Secure-Host-Baseline", "role": "main", "score": 10}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:05:08.021209+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T03:55:04.524421+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "ba7e5954a3e5088ededd20b0f27a144cc95478a8feea45986b0f448ddc630863", "fetched_at": "2026-08-28T04:05:08.021209+00:00", "kind": "readme", "missing": false, "url": "https://github.com/nsacyber/Windows-Secure-Host-Baseline"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 0, "longevity": 100, "rhythm": 35}, "computed_at": "2026-09-03T02:20:16.233290+00:00", "flags": ["no_releases", "archived", "no_license"], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 3841, "days_push": 1348, "days_rel": null, "gap_med": null, "n_releases_24m": 0}, "score": 10, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}