Application Control creates a allow list of all authorized executable files and blocks the execution of any program that isn't allowed. Change Control monitors and prevents changes to the file system and it write-protects and read-protects critical files from unauthorized tampering.
The allow list details authorized files and determines trusted or known files. In Enabled mode, only files that are present in the allow list are permitted to run. All files in the allow list are protected and can't be changed or deleted.
Application Control stores the allow list for each drive or volume at the following location:
<volume>/.solidcore/scinv