No. Command generation is plain JavaScript in your browser. Server names, IPs, usernames, passwords and paths never leave your machine.
Generate exact, copy-paste commands for Windows Server tasks: network diagnostics, Defender Firewall rules, IIS sites and app pools, users and NTFS permissions, scheduled tasks, services, storage and maintenance — built entirely in your browser.
Windows admin commands hide a hundred small traps: a firewall rule that never matches because the profile is wrong, a scheduled task that works when you run it manually but not as SYSTEM, an icacls grant that wipes inheritance. The Windows Command Builder generates the exact command with the right flags, quoting and defaults from a short form.
Every command is produced by JavaScript in your browser — server names, IPs, usernames and paths you type are never sent to any server.
Choose from eight tabs: network diagnostics, firewall, IIS, users & permissions, scheduled tasks, services, storage and maintenance.
Hosts, ports, paths and account names. Sensible production defaults are pre-selected.
Ready-to-paste CMD or PowerShell lines — with a verification step for anything risky.
Review once, paste into an elevated prompt. Nothing is uploaded, logged or stored anywhere.
Always export the current policy before changing firewall rules — the export task below includes that step.
Commands use the IIS PowerShell module (Import-Module WebAdministration) — run in an elevated PowerShell.
The password field exists so the command syntax is complete — change it before running, and prefer creating service accounts without interactive login.
Output includes a test-run command and a "last result" check — 0x0 means success.
The extend task includes a Get-Partition verification step first — extending the wrong volume is not reversible.
These are all read-only or safe-by-default commands — nothing here deletes system files.
Everything above runs in JavaScript in your browser. Server names, IPs, usernames and paths you enter are never uploaded — safe to use against production infrastructure.
| Tab | Covers | Typical use |
|---|---|---|
| Network | Test-NetConnection, ping, tracert, DNS, active connections, shares, static IP | Connectivity troubleshooting, opening access for a team |
| Firewall | Defender Firewall rules (allow/block), program rules, ICMP, policy export & restore | Locking down or opening up a Windows VPS |
| IIS | Sites, app pools, bindings, log scanning, NTFS permissions for IIS | New site bring-up, recycling hung pools |
| Users | Local accounts, group membership, icacls grants, access auditing | Service accounts, least-privilege access |
| Tasks | schtasks register with presets, test-run, last-result check | Backups and maintenance scripts |
| Services | Start/stop/restart, startup types, auto-restart on failure, port-to-service mapping | Keeping services alive and identifying listeners |
| Storage | Usage reports, largest folders, volume extension, safe disk checks, cleanup | Freeing space, growing disks |
| Maintenance | SFC/DISM, Windows Update, event-log scanning, Defender scans, health reports | Keeping the server patched and monitored |
No. Command generation is plain JavaScript in your browser. Server names, IPs, usernames, passwords and paths never leave your machine.
Yes — open an elevated PowerShell (Run as Administrator) for firewall, IIS, users, services and storage commands. Diagnostic-only commands like ping, Test-NetConnection and DNS lookups work in a normal prompt.
PowerShell where it is the modern, safer option (firewall, IIS, storage, maintenance), and classic CMD tools like net user, schtasks and icacls where they remain the standard. Each output block tells you which shell it needs.
Windows Server 2016 through 2025 and Windows 10/11. Everything generated ships in the box — no third-party modules required.
Exporting creates a restorable snapshot (netsh advfirewall export). If a new rule locks you out of RDP, you can restore the previous policy from the console or WinRM — or ask your host's out-of-band console to do it.
The maintenance tab only generates safe-by-default commands: read-only checks, DISM component cleanup, temp-folder clearing and reports. It never generates deletions outside temp/recycle locations — review anything before you paste it.