I built JVBar to automate both halves: the assessment and the remediation.
How it works: - A read-only PowerShell script (Get-* cmdlets + secedit /export, no writes) collects the server config - The engine compares it against 50 CIS Benchmark controls for Windows Server 2022/2025 and scores compliance 0-100 - For each failed control it generates a remediation script with rollback commands and a plain-English impact note
Currently covers Windows Server 2019, 2022, 2025 and Windows 11. More controls and platforms (Active Directory, VMware ESXi, Azure) on the roadmap.
Pricing: Free tier (3 scans/day), $29/mo Pro (unlimited + remediation scripts), $99/mo Team. 90% off for first 20 customers.
The audit script source will be on GitHub shortly.