Soda: Your right MBSA, doesnt make any changes, but it does properly scan for "know issues" and it does (pretty clearly) explain how to correct the problem. I am not totally sure i would want a program making policy changes FOR me.

I always felt the information it returned was pretty straight forward on how to correct the issues it found.....

HTRegz: it isn't not even CLOSE to a all in one tool. If I am reading this right, SecretMaker is a real time utility while MBSA is not, nor is MBSA scanning for anything more the known issues and port scanning. Looking for exposure to exploits, verses the exploits themselves. Or at least thats my take on it...