Skip to main content

Overview

The LocalGPOs command enumerates local Group Policy Objects (GPOs) applied to the machine and users. Local GPOs can override or supplement domain policies and may contain security-relevant configurations, restrictions, or misconfigurations.

Syntax

This command does not support remote execution.

Output

Returns local GPO settings including:
  • Computer policies
  • User policies
  • Security settings
  • Software restrictions
  • Script configurations
  • Administrative templates

Use Cases

  • Identify local security policies
  • Discover restrictions and bypasses
  • Find misconfigurations
  • Understand execution controls
  • Identify privilege elevation opportunities

Example Output

Remote Execution

This command does NOT support remote execution.

Detection Considerations

Low detection risk - reads local policy files and registry.