As for the inbound rules, I understand is good to have them to prevent the popups but there is no need to have them as "allow the connection" rules, because the monitoring connections are local we could have them as "block the connection" rules and the monitoring would still work correctly(as far as I have tested over the years) without allowing other LAN devices access to the mining software.
The "Block all incoming connections, including those in the list of allowed apps" might seem enough for most use cases but I have mining computers that serve other content so I need access to some of their ports.
Please consider adding an option so we can decide whether to create the rules as allow or block rules, thank you.
With all due respect to Patrike, I ask you not to, AM is monitoring software.
And building a firewall into it will simply be a big mistake, because there will be a huge number of problems with permissions and restrictions in the rules
And what you ask for is done at the border router