The scripts in this repository are read-only: they query settings and write report files, and they make no changes to the system.
If you find a security problem in a script, email bugs@hans.study rather than opening a public issue.
Audit reports contain hostnames, account names, and configuration details. Treat them as sensitive and store them with your other assessment evidence, not in a public place.