What it works with
Module: ActiveDirectory
Context: Windows PowerShell 5.1 · Active Directory
Compatibility: Windows PowerShell 5.1 with the ActiveDirectory module is the supported target for this template.
Exports direct and recursive leaf membership for well-known privileged Active Directory groups using SID-based discovery so localized group names do not break the inventory.
Generated locally in your browser · Review before running · No tenant access
Exports direct and recursive leaf membership for well-known privileged Active Directory groups using SID-based discovery so localized group names do not break the inventory.
Configure Export privileged AD group membership in the Builder, review the generated PowerShell and run it in your own environment.
Exports direct and recursive leaf membership for well-known privileged Active Directory groups using SID-based discovery so localized group names do not break the inventory. It is designed as a focused inventory step that you can review and retain locally.
The template uses ActiveDirectory and requires Read access to Active Directory groups and membership.. Output: CSV report.
Read the generated script before execution. Read-only describes the intended Opselith template behavior; your surrounding commands, environment and permissions remain your responsibility.
This Free template is generated locally in your browser.
Exports direct and recursive leaf membership for well-known privileged Active Directory groups using SID-based discovery so localized group names do not break the inventory. Review these details before generating or running the script.
Module: ActiveDirectory
Context: Windows PowerShell 5.1 · Active Directory
Compatibility: Windows PowerShell 5.1 with the ActiveDirectory module is the supported target for this template.
Permissions: Directory read access
Risk: Low
Execution impact: Read-only. The script reads configuration or inventory data and does not intentionally create, update or remove objects.
Output: CSV report generated locally by the script.
This template is available in the free library and is generated locally in your browser.
Exports direct and recursive leaf membership for well-known privileged Active Directory groups using SID-based discovery so localized group names do not break the inventory.
Enter the required values in the Builder, review the generated script and confirm the output before running it.
Runtime and community evidence change only after an external tester result is reviewed and accepted for release evidence.
Tester: report a result →Last reviewed: 27 Aug 2026
Analyzer evidence: Awaiting a release PSScriptAnalyzer gate that includes this script. No analyzer pass is claimed yet.
Pending and Not yet recorded are evidence states, not failures. Analyzer status does not imply runtime validation.