About PowerShell Security Analyzer

Project Purpose

A production-grade, browser-based static analysis tool designed to detect suspicious behavior, obfuscation, MITRE ATT&CK techniques, and Indicators of Compromise (IOCs) in PowerShell scripts without executing the code.

Security & Privacy Architecture
  • 100% Client-Side: All analysis happens in your browser's memory using JavaScript.
  • No Telemetry: Zero analytics, tracking, or external API calls.
  • No Execution: Uploaded code is treated strictly as plain text. No eval(), no Function() constructors.
  • Local Storage Only: Scan history is saved to your browser's localStorage and can be cleared at any time.
Technology Stack

HTML5, CSS3, Modern JavaScript (ES6+), Bootstrap 5, Bootstrap Icons, Chart.js. No backend, no Node.js, no Python, no AI APIs.

Author & License

Author: Nandha Kumar M

GitHub: nandha2001mroot/powershell-security-analyzer

License: MIT License

Security Disclaimer: Detection results are heuristic and may contain false positives or false negatives. Never execute suspicious PowerShell code solely because this tool reports it as safe. Perform additional analysis using appropriate security tooling and isolated environments.