I'm not IT, I'm' just the senior most engineer in a game studio. Ive got WPA captures that point to windows defender, even with processes and folders excluded. But I have literally no idea what to do with those traces, hence my 99% conviction.
If it is mostly your own tooling you may want to look at setting up a dev drive. It is supposed to be more optimized around workloads that would normally spin stuff like defender off the rails.
System -> Advanced ->
-> For developers -> Developer Mode [on]
-> Dev Drive -> Create Dev Drive
If it is mostly your own tooling you may want to look at setting up a dev drive. It is supposed to be more optimized around workloads that would normally spin stuff like defender off the rails.