About PowerShell Security Analyzer
Project Purpose
A production-grade, browser-based static analysis tool designed to detect suspicious behavior, obfuscation, MITRE ATT&CK techniques, and Indicators of Compromise (IOCs) in PowerShell scripts without executing the code.
Security & Privacy Architecture
- 100% Client-Side: All analysis happens in your browser's memory using JavaScript.
- No Telemetry: Zero analytics, tracking, or external API calls.
- No Execution: Uploaded code is treated strictly as plain text. No
eval(), noFunction()constructors. - Local Storage Only: Scan history is saved to your browser's localStorage and can be cleared at any time.
Technology Stack
HTML5, CSS3, Modern JavaScript (ES6+), Bootstrap 5, Bootstrap Icons, Chart.js. No backend, no Node.js, no Python, no AI APIs.
Author & License
Author: Nandha Kumar M
GitHub: nandha2001mroot/powershell-security-analyzer
License: MIT License
Security Disclaimer: Detection results are heuristic and may contain false positives or false negatives. Never execute suspicious PowerShell code solely because this tool reports it as safe. Perform additional analysis using appropriate security tooling and isolated environments.