Client Environment Profile
Before any test, we map what is installed and authorized by policy, which controls are active and with what coverage, how the network is segmented and how identity/MFA are configured. That is what lets us distinguish "RustDesk installed" from "RustDesk authorized by policy, with verified hash". Without that context, the two look identical.