---
title: ComputerAdministrativeTemplates type | Wartiva GraphQL API
description: Computer-specific Administrative Templates (ADMX) settings on an Endpoint. Wartiva GraphQL API reference with arguments, fields, and examples.
url: https://wartiva.com/api-docs/types/computer-administrative-templates.html
updated: 2026-10-07
---

Endpoint configuration · GraphQL type

# `ComputerAdministrativeTemplates` type

Computer-specific Administrative Templates (ADMX) settings on an Endpoint.

## Fields

| Field Name | Description |
|---|---|
| `noLockScreenCamera` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the camera is disabled on the lock screen. |
| `noLockScreenSlideshow` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the lock screen slideshow is disabled. |
| `allowInputPersonalization` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether speech, inking, and typing personalization is allowed. |
| `allowOnlineTips` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether online tips and help for the Settings app are allowed. |
| `rpcAuthnLevelPrivacyEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether RPC authentication level privacy is enabled for packet forwarding. |
| `smbV1ClientDriverStart` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMBv1 client driver is started. |
| `smbV1Server` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMBv1 server protocol is enabled. |
| `disableExceptionChainValidation` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Structured Exception Handling Overwrite Protection (SEHOP) is disabled. |
| `nodeType` - [`NetBTNodeType`](https://wartiva.com/api-docs/types/net-bt-node-type.html) | NetBT node type for NetBIOS over TCP/IP name resolution. |
| `useLogonCredential` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WDigest credentials are stored in memory by the credential manager. |
| `enableCertPaddingCheck` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether strict Authenticode signature verification (EnableCertPaddingCheck) is enforced for Portable Executable files, mitigating CVE-2013-3900. |
| `enableCertPaddingCheckWow6432Node` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Authenticode certificate padding check is also enforced for the 32-bit subsystem on a 64-bit OS (Wow6432Node registry view). |
| `autoAdminLogon` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether automatic admin logon is enabled. |
| `disableAutoSourceRouting` - [`SourceRouting`](https://wartiva.com/api-docs/types/source-routing.html) | IPv6 source routing protection level. |
| `disableIpSourceRouting` - [`SourceRouting`](https://wartiva.com/api-docs/types/source-routing.html) | IPv4 source routing protection level. |
| `disableSavePassword` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether saving passwords in the Remote Desktop connection is disabled. |
| `enableICMPRedirect` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether ICMP redirects can override OSPF-generated routes. |
| `keepAliveTime` - [`Duration`](https://wartiva.com/api-docs/types/duration.html) | TCP keep-alive interval duration. |
| `noNameReleaseOnDemand` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the computer releases its NetBIOS name on request. |
| `performRouterDiscovery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether IRDP router discovery is performed. |
| `safeDllSearchMode` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Safe DLL search mode is enabled for the DLL search order. |
| `screenSaverGracePeriod` - [`Duration`](https://wartiva.com/api-docs/types/duration.html) | Grace period before the screen saver password takes effect. |
| `tcpMaxDataRetransmissionsIpv6` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum TCP data retransmissions over IPv6. |
| `tcpMaxDataRetransmissionsIpv4` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum TCP data retransmissions over IPv4. |
| `eventLogWarningLevel` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Warning level threshold for the security event log. |
| `enableMulticast` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether multicast name resolution (LLMNR) is enabled. |
| `disableIPv6DefaultDnsServers` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the DNS client's built-in default IPv6 DNS server addresses are disabled (DisableIPv6DefaultDnsServers). |
| `enableFrontProviders` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether front-end font providers are enabled. |
| `allowInsecureGuestAuth` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether insecure guest logons to an SMB server are allowed. |
| `lanmanServerAuditClientDoesNotSupportEncryption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB server audits clients that do not support encryption. |
| `lanmanServerAuditClientDoesNotSupportSigning` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB server audits clients that do not support signing. |
| `lanmanServerAuditInsecureGuestLogon` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB server audits insecure guest logons. |
| `lanmanServerEnableAuthRateLimiter` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB server authentication rate limiter is enabled. |
| `lanmanServerEnableMailslots` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether SMB server mailslots are enabled. |
| `lanmanServerMinSmb2Dialect` - [`SMBVersion`](https://wartiva.com/api-docs/types/smb-version.html) | Minimum SMB2 dialect version for the SMB server. |
| `lanmanServerInvalidAuthDelayTime` - [`Duration`](https://wartiva.com/api-docs/types/duration.html) | Delay duration for invalid authentication attempts on the SMB server. |
| `lanmanWorkstationAuditInsecureGuestLogon` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB workstation audits insecure guest logons. |
| `lanmanWorkstationAuditServerDoesNotSupportEncrypt` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB workstation audits servers that do not support encryption. |
| `lanmanWorkstationAuditServerDoesNotSupportSigning` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB workstation audits servers that do not support signing. |
| `lanmanWorkstationEnableMailslots` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether SMB workstation mailslots are enabled. |
| `lanmanWorkstationMinSmb2Dialect` - [`SMBVersion`](https://wartiva.com/api-docs/types/smb-version.html) | Minimum SMB2 dialect version for the SMB workstation. |
| `lanmanWorkstationRequireEncryption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SMB workstation requires encryption. |
| `allowLLTDIOOnDomain` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether LLTDIO responder is allowed on a domain network. |
| `allowLLTDIOOnPublicNet` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether LLTDIO responder is allowed on a public network. |
| `enableLLTDIO` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the LLTDIO driver is enabled. |
| `prohibitLLTDIOOnPrivateNet` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether LLTDIO responder is prohibited on a private network. |
| `allowRspndrOnDomain` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Responder (RSPNDR) driver is allowed on a domain network. |
| `allowRspndrOnPublicNet` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Responder (RSPNDR) driver is allowed on a public network. |
| `enableRspndr` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Responder (RSPNDR) driver is enabled. |
| `prohibitRspndrOnPrivateNet` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Responder (RSPNDR) driver is prohibited on a private network. |
| `p2PNetworkServicesDisabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether peer-to-peer network services are disabled. |
| `ncAllowNetBridgeNla` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Network Bridge can be installed and configured on a domain network. |
| `ncShowSharedAccessUi` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the shared access UI for Internet Connection Sharing is shown. |
| `hardenedPathsNetlogon` - [`String`](https://wartiva.com/api-docs/types/string.html) | UNC hardened access path configuration for NETLOGON share. |
| `hardenedPathsSysvol` - [`String`](https://wartiva.com/api-docs/types/string.html) | UNC hardened access path configuration for SYSVOL share. |
| `disabledComponents` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | IPv6 disabled components bitmask. |
| `enableRegistrars` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WCN registrars are enabled for wireless network configuration. |
| `disableFlashConfigRegistrar` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the WCN Flash Config registrar is disabled. |
| `disableInBand802DOT11Registrar` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the WCN In-Band 802.11 registrar is disabled. |
| `disableUPnPRegistrar` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the WCN UPnP registrar is disabled. |
| `disableWPDRegistrar` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the WCN WPD registrar is disabled. |
| `disableWcnUi` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Windows Connect Now UI is disabled. |
| `fMininimizeConnections` - [`SimultaneousConnectionType`](https://wartiva.com/api-docs/types/simultaneous-connection-type.html) | Policy for minimizing simultaneous network connections. |
| `autoConnectAllowedOEM` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether automatic connection to suggested open Wi-Fi hotspots is allowed. |
| `registerSpoolerRemoteRpcEndPoint` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Print Spooler accepts remote RPC connections. |
| `redirectionguardPolicy` - [`RedirectionGuardPolicy`](https://wartiva.com/api-docs/types/redirection-guard-policy.html) | Printer redirection guard policy. |
| `rpcUseNamedPipeProtocol` - [`RpcUseNamedPipeProtocol`](https://wartiva.com/api-docs/types/rpc-use-named-pipe-protocol.html) | RPC protocol used for outgoing printer connections. |
| `rpcAuthentication` - [`RpcAuthentication`](https://wartiva.com/api-docs/types/rpc-authentication.html) | RPC connection authentication setting for printers. |
| `rpcProtocols` - [`RpcProtocols`](https://wartiva.com/api-docs/types/rpc-protocols.html) | Allowed RPC protocols for incoming printer connections. |
| `forceKerberosForRpc` - [`ForceKerberosForRpc`](https://wartiva.com/api-docs/types/force-kerberos-for-rpc.html) | Whether Kerberos is forced for RPC printer connections. |
| `rpcTcpPort` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | TCP port used for RPC printer connections. |
| `restrictDriverInstallationToAdministrators` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether print driver installation is restricted to administrators. |
| `copyFilesPolicy` - [`CopyFilesPolicy`](https://wartiva.com/api-docs/types/copy-files-policy.html) | Policy for copying files during Point and Print installation. |
| `noWarningNoElevationOnInstall` - [`NoWarningNoElevationOnInstall`](https://wartiva.com/api-docs/types/no-warning-no-elevation-on-install.html) | Warning and elevation behavior for Point and Print driver installation. |
| `updatePromptSettings` - [`UpdatePromptSettings`](https://wartiva.com/api-docs/types/update-prompt-settings.html) | Warning and elevation behavior for Point and Print driver updates. |
| `requireIPPs` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether IPP (Internet Printing Protocol) printers must use IPPS (IPP over TLS/SSL). |
| `windowsProtectedPrintGroupPolicyState` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows protected print mode (Mopria-certified drivers only) is enabled. |
| `securityFlagsBlockUnknownCA` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the IPP TLS/SSL security policy blocks printers presenting a certificate from an unknown certificate authority. |
| `securityFlagsBlockCertWrongUsage` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the IPP TLS/SSL security policy blocks printers presenting a non-server certificate (wrong certificate usage). |
| `securityFlagsBlockCertCNInvalid` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the IPP TLS/SSL security policy blocks printers presenting a certificate with an invalid common name. |
| `securityFlagsBlockCertDateInvalid` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the IPP TLS/SSL security policy blocks printers presenting a certificate with an invalid (expired or not yet valid) date. |
| `noCloudApplicationNotification` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether cloud-based app notifications are disabled. |
| `processCreationIncludeCmdLineEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether command line data is included in process creation audit events. |
| `allowEncryptionOracle` - [`AllowEncryptionOracle`](https://wartiva.com/api-docs/types/allow-encryption-oracle.html) | CredSSP encryption oracle remediation policy. |
| `allowProtectedCreds` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether restricted admin and remote Credential Guard mode connections are allowed. |
| `enableVirtualizationBasedSecurity` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Virtualization Based Security (VBS) is enabled. |
| `requirePlatformSecurityFeatures` - [`RequirePlatformSecurityFeatures`](https://wartiva.com/api-docs/types/require-platform-security-features.html) | Platform security features required for Virtualization Based Security. |
| `hypervisorEnforcedCodeIntegrity` - [`HypervisorEnforcedCodeIntegrity`](https://wartiva.com/api-docs/types/hypervisor-enforced-code-integrity.html) | Hypervisor-enforced Code Integrity (HVCI) policy. |
| `hvcimatRequired` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether HVCI requires memory attributes table (MAT) support. |
| `lsaCfgFlags` - [`CredentialIsolation`](https://wartiva.com/api-docs/types/credential-isolation.html) | Credential Guard (LSA isolation) configuration flags. |
| `configureSystemGuardLaunch` - [`SystemGuardLaunch`](https://wartiva.com/api-docs/types/system-guard-launch.html) | System Guard Secure Launch configuration. |
| `configureKernelShadowStacksLaunch` - [`KernelShadowStacksLaunch`](https://wartiva.com/api-docs/types/kernel-shadow-stacks-launch.html) | Kernel-mode Hardware-enforced Stack Protection configuration. |
| `denyDeviceIds` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether devices matching specific hardware IDs are denied installation. |
| `denyDeviceClasses` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether installation of devices using drivers that match the configured device setup classes is prevented (DenyDeviceClasses). |
| `denyDeviceClassesList` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Device setup class GUIDs that Windows is prevented from installing drivers for, e.g. the IEEE 1394 device setup classes. |
| `denyDeviceClassesRetroactive` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the device setup class installation restrictions also apply to devices that were already installed (DenyDeviceClassesRetroactive). |
| `preventDeviceMetadataFromNetwork` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether device metadata retrieval from the internet is prevented. |
| `driverLoadPolicy` - [`DriverLoadPolicy`](https://wartiva.com/api-docs/types/driver-load-policy.html) | Boot-start driver initialization policy for Early Launch Antimalware. |
| `clfsAuthenticationChecking` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Common Log File System (CLFS) logfile authentication is enabled (ClfsAuthenticationChecking). |
| `sudoEnabled` - [`SudoBehavior`](https://wartiva.com/api-docs/types/sudo-behavior.html) | Behavior of the sudo.exe command line tool. See [SudoBehavior](https://wartiva.com/api-docs/types/sudo-behavior.html). |
| `enableCdp` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Connected Devices Platform (CDP) is enabled. |
| `noUseStoreOpenWith` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the "Look for an app in the Store" option is disabled for unknown file types. |
| `disableWebPnPDownload` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether downloading of print drivers over HTTP is disabled. |
| `preventHandwritingDataSharing` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether sharing of handwriting recognition personalization data is prevented. |
| `preventHandwritingErrorReports` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether handwriting recognition error reports are prevented. |
| `exitOnMSICW` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Internet Connection Wizard is skipped if the internet connection already exists. |
| `noWebServices` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows web services for device operations are disabled. |
| `disableHTTPPrinting` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether HTTP printing is disabled. |
| `noRegistration` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows registration is disabled. |
| `disableContentFileUpdates` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether automatic updates of content files used by Windows are disabled. |
| `noOnlinePrintsWizard` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Online Prints Wizard is disabled. |
| `noPublishingWizard` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Web Publishing and Online Ordering Wizards are disabled. |
| `ceip` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Customer Experience Improvement Program is enabled. |
| `ceipEnable` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Customer Experience Improvement Program data collection is enabled. |
| `windowsErrorReportingDisabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows Error Reporting is disabled. |
| `pcHealthErrorReportingDoReport` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether PC Health error reporting is enabled. |
| `devicePKInitBehavior` - [`DevicePKInitBehavior`](https://wartiva.com/api-docs/types/device-pkinit-behavior.html) | Device PKInit authentication behavior for Kerberos. |
| `devicePKInitEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether device PKInit during Kerberos authentication is enabled. |
| `deviceEnumerationPolicy` - [`DeviceEnumerationPolicy`](https://wartiva.com/api-docs/types/device-enumeration-policy.html) | DMA Guard device enumeration policy for external DMA-capable devices. |
| `allowCustomSSPsAPs` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether custom Security Support Providers and Authentication Packages can be loaded into LSASS. |
| `runAsPPL` - [`RunAsPPL`](https://wartiva.com/api-docs/types/run-as-ppl.html) | LSA Protection (Protected Process Light) configuration. |
| `blockUserInputMethodsForSignIn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether input methods not specific to the user are blocked at sign-in. |
| `blockUserFromShowingAccountDetailsOnSignin` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the user is blocked from showing account details on the sign-in screen. |
| `dontDisplayNetworkSelectionUI` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the network selection UI is hidden on the logon screen. |
| `disableLockScreenAppNotifications` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether app notifications are disabled on the lock screen. |
| `allowDomainPINLogon` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether domain PIN logon is allowed. |
| `allowCrossDeviceClipboard` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether cross-device clipboard synchronization is allowed. |
| `uploadUserActivities` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether user activities are uploaded to the cloud. |
| `allowNetworkConDuringStandbyOnBattery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether network connectivity during connected standby on battery is allowed. |
| `allowNetworkConDuringStandbyPluggedIn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether network connectivity during connected standby when plugged in is allowed. |
| `allowStandbyStatesWhenSleeping` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether standby states (S1-S3) are allowed when sleeping on battery. |
| `allowStandbyStatesWhenPluggedIn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether standby states (S1-S3) are allowed when plugged in. |
| `requirePasswordOnWakeOnBattery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether a password is required when waking from sleep on battery. |
| `requirePasswordOnWakeWhenPluggedIn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether a password is required when waking from sleep while plugged in. |
| `fAllowUnsolicited` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether unsolicited Remote Assistance offers are allowed. |
| `fAllowToGetHelp` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether users can request Remote Assistance. |
| `enableAuthEpResolution` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether authenticated RPC endpoint resolution is enabled. |
| `restrictRemoteClients` - [`RestrictRemoteClients`](https://wartiva.com/api-docs/types/restrict-remote-clients.html) | RPC remote client restriction policy. |
| `disableQueryRemoteServer` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether querying of a remote server for DNS client events is disabled. |
| `scenarioExecutionEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether diagnostic scenario execution is enabled. |
| `disabledByGroupPolicy` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Scheduled Task creation is disabled by Group Policy. |
| `ntpClientEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Windows NTP client is enabled. |
| `systemAllowEncryptionOracle` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the system-level CredSSP encryption oracle remediation is enabled. |
| `allowSharedLocalAppData` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether apps can share application data between users. |
| `blockNonAdminUserInstall` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether non-admin users are blocked from installing packaged apps. |
| `disablePerUserUnsignedPackagesByDefault` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether per-user unsigned Windows App packages are prevented from installing by default (DisablePerUserUnsignedPackagesByDefault). |
| `letAppsActivateWithVoiceAboveLock` - [`LetAppsActivateWithVoice`](https://wartiva.com/api-docs/types/let-apps-activate-with-voice.html) | Voice activation above lock screen policy for apps. |
| `msaOptional` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether a Microsoft account is optional for modern apps. |
| `blockHostedAppAccessWinRT` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether hosted apps can access the Windows Runtime. |
| `noAutoplayfornonVolume` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether autoplay is disabled for non-volume MTP devices. |
| `noAutorun` - [`NoAutoRun`](https://wartiva.com/api-docs/types/no-auto-run.html) | Autorun default behavior. |
| `noDriveTypeAutoRun` - [`NoDriveTypeAutoRun`](https://wartiva.com/api-docs/types/no-drive-type-auto-run.html) | Drive types for which autorun is disabled. |
| `enhancedAntiSpoofing` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether enhanced anti-spoofing for Windows Hello face authentication is enabled. |
| `fdvDiscoveryVolumeType` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker discovery volume type is configured for fixed data drives. |
| `fdvRecovery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker recovery options for fixed data drives are configured. |
| `fdvManageDRA` - [`ManageDRA`](https://wartiva.com/api-docs/types/manage-dra.html) | BitLocker Data Recovery Agent policy for fixed data drives. |
| `fdvRecoveryPassword` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery password option for fixed data drives. |
| `fdvRecoveryKey` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery key option for fixed data drives. |
| `fdvHideRecoveryPage` - [`HideRecoveryPage`](https://wartiva.com/api-docs/types/hide-recovery-page.html) | Whether the BitLocker recovery page is hidden for fixed data drives. |
| `fdvActiveDirectoryBackup` - [`ADBackup`](https://wartiva.com/api-docs/types/ad-backup.html) | Whether BitLocker recovery info is backed up to AD DS for fixed data drives. |
| `fdvActiveDirectoryInfoToStore` - [`ADInfoToStore`](https://wartiva.com/api-docs/types/ad-info-to-store.html) | Type of BitLocker recovery info stored in AD DS for fixed data drives. |
| `fdvRequireActiveDirectoryBackup` - [`RequireADBackup`](https://wartiva.com/api-docs/types/require-ad-backup.html) | Whether AD DS backup is required before enabling BitLocker on fixed data drives. |
| `fdvHardwareEncryption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether hardware-based encryption is used for fixed data drives. |
| `fdvPassphrase` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether passphrase unlock is allowed for fixed data drives. |
| `fdvAllowUserCert` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether user certificate unlock is allowed for fixed data drives. |
| `fdvEnforceUserCert` - [`EnforceUserCert`](https://wartiva.com/api-docs/types/enforce-user-cert.html) | Whether a user certificate is enforced for fixed data drive unlock. |
| `useEnhancedPin` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether enhanced PIN is allowed for BitLocker startup. |
| `osAllowSecureBootForIntegrity` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Secure Boot is allowed for BitLocker OS drive integrity validation. |
| `osRecovery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker recovery options for the OS drive are configured. |
| `osManageDRA` - [`ManageDRA`](https://wartiva.com/api-docs/types/manage-dra.html) | BitLocker Data Recovery Agent policy for the OS drive. |
| `osRecoveryPassword` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery password option for the OS drive. |
| `osRecoveryKey` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery key option for the OS drive. |
| `osHideRecoveryPage` - [`HideRecoveryPage`](https://wartiva.com/api-docs/types/hide-recovery-page.html) | Whether the BitLocker recovery page is hidden for the OS drive. |
| `osActiveDirectoryBackup` - [`ADBackup`](https://wartiva.com/api-docs/types/ad-backup.html) | Whether BitLocker recovery info is backed up to AD DS for the OS drive. |
| `osActiveDirectoryInfoToStore` - [`ADInfoToStore`](https://wartiva.com/api-docs/types/ad-info-to-store.html) | Type of BitLocker recovery info stored in AD DS for the OS drive. |
| `osRequireActiveDirectoryBackup` - [`RequireADBackup`](https://wartiva.com/api-docs/types/require-ad-backup.html) | Whether AD DS backup is required before enabling BitLocker on the OS drive. |
| `osHardwareEncryption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether hardware-based encryption is used for the OS drive. |
| `osPassphrase` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether passphrase unlock is allowed for the OS drive. |
| `useAdvancedStartup` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether additional authentication at startup is required for BitLocker. |
| `enableBDEWithNoTPM` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker can be enabled without a compatible TPM. |
| `rdvDiscoveryVolumeType` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker discovery volume type is configured for removable data drives. |
| `rdvRecovery` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether BitLocker recovery options for removable data drives are configured. |
| `rdvManageDRA` - [`ManageDRA`](https://wartiva.com/api-docs/types/manage-dra.html) | BitLocker Data Recovery Agent policy for removable data drives. |
| `rdvRecoveryPassword` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery password option for removable data drives. |
| `rdvRecoveryKey` - [`RecoveryPasswordOption`](https://wartiva.com/api-docs/types/recovery-password-option.html) | BitLocker recovery key option for removable data drives. |
| `rdvHideRecoveryPage` - [`HideRecoveryPage`](https://wartiva.com/api-docs/types/hide-recovery-page.html) | Whether the BitLocker recovery page is hidden for removable data drives. |
| `rdvActiveDirectoryBackup` - [`ADBackup`](https://wartiva.com/api-docs/types/ad-backup.html) | Whether BitLocker recovery info is backed up to AD DS for removable data drives. |
| `rdvActiveDirectoryInfoToStore` - [`ADInfoToStore`](https://wartiva.com/api-docs/types/ad-info-to-store.html) | Type of BitLocker recovery info stored in AD DS for removable data drives. |
| `rdvRequireActiveDirectoryBackup` - [`RequireADBackup`](https://wartiva.com/api-docs/types/require-ad-backup.html) | Whether AD DS backup is required before enabling BitLocker on removable data drives. |
| `rdvHardwareEncryption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether hardware-based encryption is used for removable data drives. |
| `rdvPassphrase` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether passphrase unlock is allowed for removable data drives. |
| `rdvAllowUserCert` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether user certificate unlock is allowed for removable data drives. |
| `rdvEnforceUserCert` - [`EnforceUserCert`](https://wartiva.com/api-docs/types/enforce-user-cert.html) | Whether a user certificate is enforced for removable data drive unlock. |
| `rdvDenyCrossOrg` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether cross-organization BitLocker access for removable data drives is denied. |
| `rdvDenyWriteAccess` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether write access to removable data drives not protected by BitLocker is denied. |
| `disableExternalDMAUnderLock` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether external DMA is blocked when the device is locked. |
| `allowCamera` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the camera is allowed. |
| `disableConsumerAccountStateContent` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether consumer account state content is disabled in cloud settings. |
| `disableCloudOptimizedContent` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether cloud-optimized content is disabled. |
| `disableWindowsConsumerFeatures` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows consumer features like Start suggestions and notifications are disabled. |
| `requirePinForPairing` - [`RequirePinForPairing`](https://wartiva.com/api-docs/types/require-pin-for-pairing.html) | PIN requirement for wireless display pairing. |
| `disablePasswordReveal` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the password reveal button is disabled. |
| `enumerateAdministrators` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether administrator accounts are enumerated during elevation. |
| `noLocalPasswordResetQuestions` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether local password reset security questions are disabled. |
| `allowTelemetry` - [`AllowTelemetry`](https://wartiva.com/api-docs/types/allow-telemetry.html) | Windows diagnostic and usage data telemetry level. |
| `disableEnterpriseAuthProxy` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the authenticated proxy for Connected User Experience and Telemetry is disabled. |
| `disableOneSettingsDownloads` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether OneSettings downloads are disabled. |
| `doNotShowFeedbackNotifications` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether feedback notifications are hidden. |
| `enableOneSettingsAuditing` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether OneSettings auditing is enabled. |
| `limitDiagnosticLogCollection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether diagnostic log collection is limited. |
| `limitDumpCollection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether dump collection is limited. |
| `allowBuildPreview` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Insider Preview builds are allowed. |
| `doDownloadMode` - [`DODownloadMode`](https://wartiva.com/api-docs/types/do-download-mode.html) | Delivery Optimization download mode. |
| `disableAPISamping` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether App and Device Inventory API sampling data is prevented from being sent to Microsoft. Note: the backing registry value name DisableAPISamping is Microsoft's typo and is correct. |
| `disableApplicationFootprint` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether App and Device Inventory Application Footprint data is prevented from being sent to Microsoft. |
| `disableInstallTracing` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether App and Device Inventory Install Tracing data is prevented from being sent to Microsoft. |
| `enableAppInstaller` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the App Installer is enabled. |
| `enableExperimentalFeatures` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether experimental App Installer features are enabled. |
| `enableHashOverride` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether hash override for App Installer is enabled. |
| `enableMSAppInstallerProtocol` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the ms-appinstaller protocol is enabled. |
| `enableLocalArchiveMalwareScanOverride` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the App Installer local archive malware scan can be overridden. |
| `enableBypassCertificatePinningForMicrosoftStore` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether App Installer certificate pinning validation for Microsoft Store sources can be bypassed. |
| `enableWindowsPackageManagerCommandLineInterfaces` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Windows Package Manager (winget) command line interfaces are enabled. |
| `eventLogApplicationRetention` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether event log retention is enabled for the Application log. |
| `eventLogApplicationMaxSize` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum size in KB of the Application event log. |
| `eventLogSecurityRetention` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether event log retention is enabled for the Security log. |
| `eventLogSecurityMaxSize` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum size in KB of the Security event log. |
| `eventLogSetupRetention` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether event log retention is enabled for the Setup log. |
| `eventLogSetupMaxSize` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum size in KB of the Setup event log. |
| `eventLogSystemRetention` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether event log retention is enabled for the System log. |
| `eventLogSystemMaxSize` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Maximum size in KB of the System event log. |
| `noDataExecutionPreventionForExplorer` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Data Execution Prevention for Windows Explorer is disabled. |
| `disableGraphRecentItems` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Activity History (recent items in Microsoft Graph) is disabled. |
| `noHeapTerminationOnCorruption` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether heap termination on corruption for Windows Explorer is disabled. |
| `hideRecommendedPersonalizedSites` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether personalized website recommendations are removed from the Recommended section of the Start Menu (HideRecommendedPersonalizedSites). |
| `disableMotWOnInsecurePathCopy` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Mark of the Web tag is not applied to files copied from insecure sources (DisableMotWOnInsecurePathCopy). |
| `preXPSP2ShellProtocolBehavior` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether shell protocol protected mode is turned off (PreXPSP2ShellProtocolBehavior), allowing applications to open any folder rather than a limited set. |
| `disableHomeGroup` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether HomeGroup is disabled. |
| `disableLocation` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Windows location framework is disabled. |
| `allowMessageSync` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether text message synchronization is allowed. |
| `disableUserAuth` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether user authentication for Defender network inspection is disabled. |
| `localSettingOverrideSpynetReporting` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether local setting override for SpyNet (MAPS) reporting is enabled. |
| `spynetReporting` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Microsoft MAPS (SpyNet) cloud-based protection reporting is enabled. |
| `exploitGuardASRRules` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender Exploit Guard Attack Surface Reduction rules are enabled. |
| `enableNetworkProtection` - [`EnableNetworkProtection`](https://wartiva.com/api-docs/types/enable-network-protection.html) | Defender network protection mode. |
| `enableFileHashComputation` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender file hash computation for every scanned file is enabled. |
| `disableIOAVProtection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender scanning of downloaded files and attachments is disabled. |
| `disableRealtimeMonitoring` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender real-time protection monitoring is disabled. |
| `disableBehaviorMonitoring` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender behavior monitoring is disabled. |
| `disableScriptScanning` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender script scanning is disabled. |
| `disableGenericRePorts` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender generic detection reports are disabled. |
| `disableRemovableDriveScanning` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender scanning of removable drives is disabled. |
| `disableEmailScanning` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Defender email scanning is disabled. |
| `puaProtection` - [`PUAProtection`](https://wartiva.com/api-docs/types/pua-protection.html) | Defender potentially unwanted application protection mode. |
| `disableAntiSpyware` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Microsoft Defender Antivirus is disabled. |
| `auditApplicationGuard` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Application Guard auditing is enabled. |
| `allowCameraMicrophoneRedirection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether camera and microphone redirection is allowed in Application Guard. |
| `allowPersistence` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether data persistence is allowed in Application Guard. |
| `saveFilesToHost` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether files can be saved from Application Guard to the host OS. |
| `appHVSIClipboardSettings` - [`AppHVSIClipboardSettings`](https://wartiva.com/api-docs/types/app-hvsi-clipboard-settings.html) | Application Guard clipboard copy direction. |
| `allowAppHVSIProviderSet` - [`AllowAppHVSIProviderSet`](https://wartiva.com/api-docs/types/allow-app-hvsi-provider-set.html) | Application Guard provider set for isolation. |
| `allowNewsAndInterests` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether News and Interests on the taskbar are allowed. |
| `enableFeeds` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the news and interests feed on the taskbar is enabled (EnableFeeds). |
| `disableFileSyncNGSC` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether OneDrive file sync is disabled. |
| `disablePushToInstall` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether push-to-install service is disabled. |
| `disableCloudClipboardIntegration` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether cloud clipboard integration is disabled. |
| `disablePasswordSaving` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether saving of Remote Desktop passwords is disabled. |
| `fDenyTSConnections` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Remote Desktop connections to this computer are denied. |
| `enableUiaRedirection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether UI Automation redirection is enabled for Remote Desktop. |
| `fDisableCcm` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether clipboard redirection is disabled in Remote Desktop sessions. |
| `fDisableCdm` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether drive redirection is disabled in Remote Desktop sessions. |
| `fDisableLocationRedir` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether location redirection is disabled in Remote Desktop sessions. |
| `fDisableLPT` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether LPT port redirection is disabled in Remote Desktop sessions. |
| `fDisablePNPRedir` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Plug and Play device redirection is disabled in Remote Desktop sessions. |
| `fDisableWebAuthn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WebAuthn redirection is disabled in Remote Desktop sessions. |
| `fPromptForPassword` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether a password is always prompted for upon Remote Desktop connection. |
| `fEncryptRPCTraffic` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether RPC traffic for Remote Desktop is encrypted. |
| `securityLayer` - [`SecurityLayer`](https://wartiva.com/api-docs/types/security-layer.html) | Security layer used for Remote Desktop connections. |
| `userAuthentication` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Network Level Authentication is required for Remote Desktop. |
| `minEncryptionLevel` - [`MinEncryptionLevel`](https://wartiva.com/api-docs/types/min-encryption-level.html) | Minimum encryption level for Remote Desktop connections. |
| `maxIdleTime` - [`Duration`](https://wartiva.com/api-docs/types/duration.html) | Maximum idle time before a Remote Desktop session is disconnected. |
| `maxDisconnectionTime` - [`Duration`](https://wartiva.com/api-docs/types/duration.html) | Maximum time a disconnected Remote Desktop session remains on the server. |
| `deleteTempDirsOnExit` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether temporary folders are deleted when a Remote Desktop session ends. |
| `scClipLevel` - [`ClipboardTransferLevel`](https://wartiva.com/api-docs/types/clipboard-transfer-level.html) | Restriction on clipboard transfers from a Remote Desktop session server to the client. See [ClipboardTransferLevel](https://wartiva.com/api-docs/types/clipboard-transfer-level.html). |
| `disableEnclosureDownload` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether enclosure downloading is disabled in RSS feeds. |
| `allowCloudSearch` - [`AllowCloudSearch`](https://wartiva.com/api-docs/types/allow-cloud-search.html) | Cloud search setting for Windows Search. |
| `allowCortana` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Cortana is allowed. |
| `allowCortanaAboveLock` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Cortana is allowed above the lock screen. |
| `allowIndexingEncryptedStoresOrItems` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether indexing of encrypted stores or items is allowed. |
| `allowSearchToUseLocation` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Search is allowed to use location. |
| `enableDynamicContentInWSB` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether dynamic content in Windows Security is enabled. |
| `noGenTicket` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Kerberos service ticket generation with a user's S4U2Self ticket is disabled. |
| `disableStoreApps` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether store apps are disabled. |
| `requirePrivateStoreOnly` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether only the private store is shown in the Microsoft Store. |
| `autoDownload` - [`AutoDownload`](https://wartiva.com/api-docs/types/auto-download.html) | Auto-download policy for Microsoft Store apps. |
| `disableOSUpgrade` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether OS upgrade via the Microsoft Store is disabled. |
| `removeWindowsStore` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether access to the Microsoft Store is removed. |
| `allowRecallEnablement` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Windows AI Recall feature is allowed to be enabled (AllowRecallEnablement). |
| `notifyMalicious` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether SmartScreen notifies users about malicious sites. |
| `notifyPasswordReuse` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether SmartScreen notifies users about password reuse. |
| `notifyUnsafeApp` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether SmartScreen notifies users about unsafe apps. |
| `serviceEnabled` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SmartScreen service is enabled. |
| `captureThreatWindow` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Enhanced Phishing Protection automatic data collection (CaptureThreatWindow) is enabled, allowing additional content to be collected from suspicious websites or apps for security analysis. |
| `enableSmartScreen` - [`EnableSmartScreen`](https://wartiva.com/api-docs/types/enable-smart-screen.html) | SmartScreen filter setting for Windows Explorer. |
| `shellSmartScreenLevel` - [`ShellSmartScreenLevel`](https://wartiva.com/api-docs/types/shell-smart-screen-level.html) | SmartScreen blocking level for Windows Explorer. |
| `phishingFilterEnabledV9` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the SmartScreen phishing filter is enabled in Internet Explorer. |
| `phishingFilterPreventOverride` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether users are prevented from overriding SmartScreen phishing warnings. |
| `allowGameDVR` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Game DVR recording is allowed. |
| `enableESSwithSupportedPeripherals` - [`EnableESSwithSupportedPeripherals`](https://wartiva.com/api-docs/types/enable-ess-with-supported-peripherals.html) | Enhanced Sign-in Security (ESS) with supported peripherals policy. |
| `allowSuggestedAppsInWindowsInkWorkspace` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether suggested apps in Windows Ink Workspace are allowed. |
| `allowWindowsInkWorkspace` - [`AllowWindowsInkWorkspace`](https://wartiva.com/api-docs/types/allow-windows-ink-workspace.html) | Windows Ink Workspace access policy. |
| `enableUserControl` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether users can control Windows Installer installation options. |
| `alwaysInstallElevated` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows Installer always installs with elevated privileges. |
| `safeForScripting` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether ActiveX controls marked as safe for scripting can be used. |
| `enableMPRNotifications` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether MPR notifications are sent during winlogon. |
| `disableAutomaticRestartSignOn` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether automatic restart sign-on after Windows Update is disabled. |
| `enableScriptBlockLogging` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether PowerShell script block logging is enabled. |
| `enableTranscripting` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether PowerShell transcription is enabled. |
| `winRMClientAllowBasic` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM client allows basic authentication. |
| `winRMClientAllowUnencryptedTraffic` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM client allows unencrypted traffic. |
| `winRMClientAllowDigest` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM client allows digest authentication. |
| `winRMServiceAllowBasic` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM service allows basic authentication. |
| `winRMServiceAllowAutoConfig` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM service auto-configuration for remote management is allowed. |
| `winRMServiceAllowUnencryptedTraffic` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM service allows unencrypted traffic. |
| `winRMServiceDisableRunAs` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether WinRM service RunAs is disabled. |
| `allowRemoteShellAccess` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether remote shell access is allowed. |
| `allowClipboardRedirection` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether clipboard redirection is allowed in Windows Sandbox. |
| `allowNetworking` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether networking is allowed in Windows Sandbox. |
| `allowWriteToMappedFolders` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether host folders mapped into Windows Sandbox can be written to (AllowWriteToMappedFolders). |
| `disallowExploitProtectionOverride` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether users are prevented from overriding Exploit Protection settings. |
| `noAutoRebootWithLoggedOnUsers` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether automatic reboot with logged-on users is suppressed for Windows Update. |
| `noAutoUpdate` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Windows automatic updates are disabled. |
| `scheduledInstallDay` - [`ScheduledInstallDay`](https://wartiva.com/api-docs/types/scheduled-install-day.html) | Day of the week for scheduled Windows Update installation. |
| `setDisablePauseUXAccess` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether the Pause Updates UI is disabled. |
| `managePreviewBuilds` - [`ManagePreviewBuilds`](https://wartiva.com/api-docs/types/manage-preview-builds.html) | Windows Insider Preview builds management policy. |
| `deferFeatureUpdatesPeriodInDays` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Number of days to defer feature updates. |
| `deferQualityUpdates` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Quality Update deferral is enabled (DeferQualityUpdates). |
| `deferQualityUpdatesPeriodInDays` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Number of days Quality Updates are deferred after release. |
| `allowTemporaryEnterpriseFeatureControl` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether features introduced via monthly quality updates (servicing) that are off by default may be enabled (AllowTemporaryEnterpriseFeatureControl). |
| `setAllowOptionalContent` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether devices can receive optional updates, including Controlled Feature Rollouts (SetAllowOptionalContent). |
| `disableWpad` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) | Whether Web Proxy Auto-Discovery (WPAD) is disabled for Windows HTTP Services (DisableWpad). |
| `disableProxyAuthenticationSchemes` - [`Uint64`](https://wartiva.com/api-docs/types/uint64.html) | Bitmask of HTTP proxy authentication schemes disabled for Windows HTTP Services (DisableProxyAuthenticationSchemes). |

## Used by

- [`AdministrativeTemplatesWindows`](https://wartiva.com/api-docs/types/administrative-templates-windows.html) type: The Group Policy Administrative Templates (ADMX) settings applied to a Windows Endpoint, read from the policy registry values those templates write.

## Example

### Example

```json
{
  "noLockScreenCamera": false,
  "noLockScreenSlideshow": true,
  "allowInputPersonalization": false,
  "allowOnlineTips": true,
  "rpcAuthnLevelPrivacyEnabled": true,
  "smbV1ClientDriverStart": true,
  "smbV1Server": true,
  "disableExceptionChainValidation": true,
  "nodeType": "NONE",
  "useLogonCredential": true,
  "enableCertPaddingCheck": false,
  "enableCertPaddingCheckWow6432Node": true,
  "autoAdminLogon": false,
  "disableAutoSourceRouting": "ENABLED_NO_ADDITIONAL_PROTECTION",
  "disableIpSourceRouting": "ENABLED_NO_ADDITIONAL_PROTECTION",
  "disableSavePassword": false,
  "enableICMPRedirect": true,
  "keepAliveTime": "600000000",
  "noNameReleaseOnDemand": false,
  "performRouterDiscovery": true,
  "safeDllSearchMode": false,
  "screenSaverGracePeriod": "600000000",
  "tcpMaxDataRetransmissionsIpv6": "8589934592",
  "tcpMaxDataRetransmissionsIpv4": "8589934592",
  "eventLogWarningLevel": "8589934592",
  "enableMulticast": true,
  "disableIPv6DefaultDnsServers": false,
  "enableFrontProviders": true,
  "allowInsecureGuestAuth": false,
  "lanmanServerAuditClientDoesNotSupportEncryption": true,
  "lanmanServerAuditClientDoesNotSupportSigning": true,
  "lanmanServerAuditInsecureGuestLogon": true,
  "lanmanServerEnableAuthRateLimiter": false,
  "lanmanServerEnableMailslots": false,
  "lanmanServerMinSmb2Dialect": "SMB_2_0_2",
  "lanmanServerInvalidAuthDelayTime": "600000000",
  "lanmanWorkstationAuditInsecureGuestLogon": true,
  "lanmanWorkstationAuditServerDoesNotSupportEncrypt": false,
  "lanmanWorkstationAuditServerDoesNotSupportSigning": true,
  "lanmanWorkstationEnableMailslots": true,
  "lanmanWorkstationMinSmb2Dialect": "SMB_2_0_2",
  "lanmanWorkstationRequireEncryption": true,
  "allowLLTDIOOnDomain": false,
  "allowLLTDIOOnPublicNet": true,
  "enableLLTDIO": true,
  "prohibitLLTDIOOnPrivateNet": false,
  "allowRspndrOnDomain": false,
  "allowRspndrOnPublicNet": true,
  "enableRspndr": false,
  "prohibitRspndrOnPrivateNet": true,
  "p2PNetworkServicesDisabled": true,
  "ncAllowNetBridgeNla": false,
  "ncShowSharedAccessUi": false,
  "hardenedPathsNetlogon": "abc123",
  "hardenedPathsSysvol": "abc123",
  "disabledComponents": "8589934592",
  "enableRegistrars": true,
  "disableFlashConfigRegistrar": true,
  "disableInBand802DOT11Registrar": false,
  "disableUPnPRegistrar": false,
  "disableWPDRegistrar": true,
  "disableWcnUi": true,
  "fMininimizeConnections": "ALLOW_SIMULTANEOUS_CONNECTIONS",
  "autoConnectAllowedOEM": false,
  "registerSpoolerRemoteRpcEndPoint": false,
  "redirectionguardPolicy": "DISABLED",
  "rpcUseNamedPipeProtocol": "RPC_OVER_TCP",
  "rpcAuthentication": "DEFAULT",
  "rpcProtocols": "RPC_OVER_NAMED_PIPES",
  "forceKerberosForRpc": "NEGOTIATE",
  "rpcTcpPort": "8589934592",
  "restrictDriverInstallationToAdministrators": false,
  "copyFilesPolicy": "DISABLED",
  "noWarningNoElevationOnInstall": "WARN_AND_ELEVATE_ON_INSTALL",
  "updatePromptSettings": "WARN_AND_ELEVATE_ON_UPDATE",
  "requireIPPs": false,
  "windowsProtectedPrintGroupPolicyState": false,
  "securityFlagsBlockUnknownCA": true,
  "securityFlagsBlockCertWrongUsage": true,
  "securityFlagsBlockCertCNInvalid": true,
  "securityFlagsBlockCertDateInvalid": false,
  "noCloudApplicationNotification": true,
  "processCreationIncludeCmdLineEnabled": true,
  "allowEncryptionOracle": "FORCE",
  "allowProtectedCreds": true,
  "enableVirtualizationBasedSecurity": true,
  "requirePlatformSecurityFeatures": "SECURE_BOOT",
  "hypervisorEnforcedCodeIntegrity": "DISABLED",
  "hvcimatRequired": false,
  "lsaCfgFlags": "DISABLED",
  "configureSystemGuardLaunch": "NOT_CONFIGURED",
  "configureKernelShadowStacksLaunch": "NOT_CONFIGURED",
  "denyDeviceIds": true,
  "denyDeviceClasses": true,
  "denyDeviceClassesList": ["abc123"],
  "denyDeviceClassesRetroactive": false,
  "preventDeviceMetadataFromNetwork": true,
  "driverLoadPolicy": "GOOD_ONLY",
  "clfsAuthenticationChecking": false,
  "sudoEnabled": "DISABLED",
  "enableCdp": true,
  "noUseStoreOpenWith": false,
  "disableWebPnPDownload": true,
  "preventHandwritingDataSharing": true,
  "preventHandwritingErrorReports": true,
  "exitOnMSICW": false,
  "noWebServices": false,
  "disableHTTPPrinting": false,
  "noRegistration": false,
  "disableContentFileUpdates": true,
  "noOnlinePrintsWizard": true,
  "noPublishingWizard": true,
  "ceip": true,
  "ceipEnable": false,
  "windowsErrorReportingDisabled": false,
  "pcHealthErrorReportingDoReport": false,
  "devicePKInitBehavior": "AUTOMATIC",
  "devicePKInitEnabled": false,
  "deviceEnumerationPolicy": "BLOCK_ALL",
  "allowCustomSSPsAPs": false,
  "runAsPPL": "DISABLED",
  "blockUserInputMethodsForSignIn": false,
  "blockUserFromShowingAccountDetailsOnSignin": true,
  "dontDisplayNetworkSelectionUI": false,
  "disableLockScreenAppNotifications": true,
  "allowDomainPINLogon": true,
  "allowCrossDeviceClipboard": false,
  "uploadUserActivities": true,
  "allowNetworkConDuringStandbyOnBattery": true,
  "allowNetworkConDuringStandbyPluggedIn": false,
  "allowStandbyStatesWhenSleeping": false,
  "allowStandbyStatesWhenPluggedIn": false,
  "requirePasswordOnWakeOnBattery": true,
  "requirePasswordOnWakeWhenPluggedIn": true,
  "fAllowUnsolicited": false,
  "fAllowToGetHelp": true,
  "enableAuthEpResolution": true,
  "restrictRemoteClients": "NONE",
  "disableQueryRemoteServer": true,
  "scenarioExecutionEnabled": true,
  "disabledByGroupPolicy": false,
  "ntpClientEnabled": true,
  "systemAllowEncryptionOracle": true,
  "allowSharedLocalAppData": true,
  "blockNonAdminUserInstall": false,
  "disablePerUserUnsignedPackagesByDefault": true,
  "letAppsActivateWithVoiceAboveLock": "USER_CONTROL",
  "msaOptional": false,
  "blockHostedAppAccessWinRT": true,
  "noAutoplayfornonVolume": false,
  "noAutorun": "DISABLED",
  "noDriveTypeAutoRun": "ALL_DRIVES",
  "enhancedAntiSpoofing": false,
  "fdvDiscoveryVolumeType": true,
  "fdvRecovery": true,
  "fdvManageDRA": "DISALLOW",
  "fdvRecoveryPassword": "DISALLOW",
  "fdvRecoveryKey": "DISALLOW",
  "fdvHideRecoveryPage": "SHOW",
  "fdvActiveDirectoryBackup": "DISABLED",
  "fdvActiveDirectoryInfoToStore": "PASSWORDS_AND_KEY_PACKAGES",
  "fdvRequireActiveDirectoryBackup": "NOT_REQUIRED",
  "fdvHardwareEncryption": false,
  "fdvPassphrase": false,
  "fdvAllowUserCert": false,
  "fdvEnforceUserCert": "NOT_REQUIRED",
  "useEnhancedPin": false,
  "osAllowSecureBootForIntegrity": false,
  "osRecovery": false,
  "osManageDRA": "DISALLOW",
  "osRecoveryPassword": "DISALLOW",
  "osRecoveryKey": "DISALLOW",
  "osHideRecoveryPage": "SHOW",
  "osActiveDirectoryBackup": "DISABLED",
  "osActiveDirectoryInfoToStore": "PASSWORDS_AND_KEY_PACKAGES",
  "osRequireActiveDirectoryBackup": "NOT_REQUIRED",
  "osHardwareEncryption": false,
  "osPassphrase": true,
  "useAdvancedStartup": true,
  "enableBDEWithNoTPM": true,
  "rdvDiscoveryVolumeType": true,
  "rdvRecovery": false,
  "rdvManageDRA": "DISALLOW",
  "rdvRecoveryPassword": "DISALLOW",
  "rdvRecoveryKey": "DISALLOW",
  "rdvHideRecoveryPage": "SHOW",
  "rdvActiveDirectoryBackup": "DISABLED",
  "rdvActiveDirectoryInfoToStore": "PASSWORDS_AND_KEY_PACKAGES",
  "rdvRequireActiveDirectoryBackup": "NOT_REQUIRED",
  "rdvHardwareEncryption": false,
  "rdvPassphrase": false,
  "rdvAllowUserCert": true,
  "rdvEnforceUserCert": "NOT_REQUIRED",
  "rdvDenyCrossOrg": true,
  "rdvDenyWriteAccess": false,
  "disableExternalDMAUnderLock": true,
  "allowCamera": false,
  "disableConsumerAccountStateContent": true,
  "disableCloudOptimizedContent": true,
  "disableWindowsConsumerFeatures": true,
  "requirePinForPairing": "NOT_REQUIRED",
  "disablePasswordReveal": true,
  "enumerateAdministrators": false,
  "noLocalPasswordResetQuestions": true,
  "allowTelemetry": "SECURITY",
  "disableEnterpriseAuthProxy": false,
  "disableOneSettingsDownloads": false,
  "doNotShowFeedbackNotifications": true,
  "enableOneSettingsAuditing": true,
  "limitDiagnosticLogCollection": true,
  "limitDumpCollection": false,
  "allowBuildPreview": false,
  "doDownloadMode": "HTTP_ONLY",
  "disableAPISamping": true,
  "disableApplicationFootprint": true,
  "disableInstallTracing": false,
  "enableAppInstaller": false,
  "enableExperimentalFeatures": false,
  "enableHashOverride": false,
  "enableMSAppInstallerProtocol": true,
  "enableLocalArchiveMalwareScanOverride": false,
  "enableBypassCertificatePinningForMicrosoftStore": false,
  "enableWindowsPackageManagerCommandLineInterfaces": true,
  "eventLogApplicationRetention": true,
  "eventLogApplicationMaxSize": "8589934592",
  "eventLogSecurityRetention": true,
  "eventLogSecurityMaxSize": "8589934592",
  "eventLogSetupRetention": false,
  "eventLogSetupMaxSize": "8589934592",
  "eventLogSystemRetention": true,
  "eventLogSystemMaxSize": "8589934592",
  "noDataExecutionPreventionForExplorer": true,
  "disableGraphRecentItems": false,
  "noHeapTerminationOnCorruption": false,
  "hideRecommendedPersonalizedSites": false,
  "disableMotWOnInsecurePathCopy": false,
  "preXPSP2ShellProtocolBehavior": false,
  "disableHomeGroup": true,
  "disableLocation": true,
  "allowMessageSync": false,
  "disableUserAuth": true,
  "localSettingOverrideSpynetReporting": true,
  "spynetReporting": false,
  "exploitGuardASRRules": false,
  "enableNetworkProtection": "DISABLED",
  "enableFileHashComputation": false,
  "disableIOAVProtection": true,
  "disableRealtimeMonitoring": true,
  "disableBehaviorMonitoring": false,
  "disableScriptScanning": true,
  "disableGenericRePorts": false,
  "disableRemovableDriveScanning": false,
  "disableEmailScanning": true,
  "puaProtection": "DISABLED",
  "disableAntiSpyware": false,
  "auditApplicationGuard": true,
  "allowCameraMicrophoneRedirection": false,
  "allowPersistence": true,
  "saveFilesToHost": true,
  "appHVSIClipboardSettings": "DISABLED",
  "allowAppHVSIProviderSet": "DISABLED",
  "allowNewsAndInterests": false,
  "enableFeeds": true,
  "disableFileSyncNGSC": true,
  "disablePushToInstall": false,
  "disableCloudClipboardIntegration": false,
  "disablePasswordSaving": false,
  "fDenyTSConnections": true,
  "enableUiaRedirection": false,
  "fDisableCcm": true,
  "fDisableCdm": false,
  "fDisableLocationRedir": true,
  "fDisableLPT": true,
  "fDisablePNPRedir": true,
  "fDisableWebAuthn": true,
  "fPromptForPassword": true,
  "fEncryptRPCTraffic": true,
  "securityLayer": "RDP",
  "userAuthentication": true,
  "minEncryptionLevel": "LOW",
  "maxIdleTime": "600000000",
  "maxDisconnectionTime": "600000000",
  "deleteTempDirsOnExit": true,
  "scClipLevel": "DISABLED",
  "disableEnclosureDownload": true,
  "allowCloudSearch": "DISABLED",
  "allowCortana": false,
  "allowCortanaAboveLock": false,
  "allowIndexingEncryptedStoresOrItems": false,
  "allowSearchToUseLocation": true,
  "enableDynamicContentInWSB": true,
  "noGenTicket": false,
  "disableStoreApps": true,
  "requirePrivateStoreOnly": true,
  "autoDownload": "ALWAYS",
  "disableOSUpgrade": true,
  "removeWindowsStore": false,
  "allowRecallEnablement": false,
  "notifyMalicious": true,
  "notifyPasswordReuse": false,
  "notifyUnsafeApp": true,
  "serviceEnabled": false,
  "captureThreatWindow": false,
  "enableSmartScreen": "OFF",
  "shellSmartScreenLevel": "WARN",
  "phishingFilterEnabledV9": false,
  "phishingFilterPreventOverride": false,
  "allowGameDVR": false,
  "enableESSwithSupportedPeripherals": "DISABLED",
  "allowSuggestedAppsInWindowsInkWorkspace": false,
  "allowWindowsInkWorkspace": "DISABLED",
  "enableUserControl": false,
  "alwaysInstallElevated": false,
  "safeForScripting": false,
  "enableMPRNotifications": true,
  "disableAutomaticRestartSignOn": false,
  "enableScriptBlockLogging": true,
  "enableTranscripting": false,
  "winRMClientAllowBasic": true,
  "winRMClientAllowUnencryptedTraffic": true,
  "winRMClientAllowDigest": true,
  "winRMServiceAllowBasic": true,
  "winRMServiceAllowAutoConfig": false,
  "winRMServiceAllowUnencryptedTraffic": false,
  "winRMServiceDisableRunAs": false,
  "allowRemoteShellAccess": true,
  "allowClipboardRedirection": true,
  "allowNetworking": false,
  "allowWriteToMappedFolders": true,
  "disallowExploitProtectionOverride": false,
  "noAutoRebootWithLoggedOnUsers": false,
  "noAutoUpdate": true,
  "scheduledInstallDay": "EVERY_DAY",
  "setDisablePauseUXAccess": false,
  "managePreviewBuilds": "DISABLE",
  "deferFeatureUpdatesPeriodInDays": "8589934592",
  "deferQualityUpdates": true,
  "deferQualityUpdatesPeriodInDays": "8589934592",
  "allowTemporaryEnterpriseFeatureControl": false,
  "setAllowOptionalContent": false,
  "disableWpad": false,
  "disableProxyAuthenticationSchemes": "8589934592"
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
