Rmagent Actuate

Phase 1 response — named, journaled, reversible actions on Windows witnesses you administer (block_ip, disable_user, isolate_host, rotate_credential, …). Dry-run first; --apply requires a plan id from a seen dry-run. No arbitrary shell. Complements rmagent-so (watch) and rmagent-redteam (drill). Use after Phase 0 finds smoke you have confirmed is real.

DrOlu d2fedb8 49 files · 104.5 KB Updated

File contents

DrOlu/agent-skills/tree/main/skills/rmagent-actuate commit d2fedb893a

Frequently asked questions

npx skillmds@latest add drolu/rmagent-actuate