Can the NCM be used to to check things? e.g. to address Cisco FN - 72511

Can the NCM be used to to check things? e.g. to address Cisco FN - 72511

Hi All,

Can the NCM be used to check things and flag if it does not meet minimum reequipments? 
For instance, SSH RSA key size is at least 2048?
Field Notice: FN - 72511 - RSA Keys Less Than 2048 Bits Are Not Supported for SSH in Cisco IOS XE Release 17.11.1 and Later - Workaround Provided - Cisco
In order to to this, you would issue "show ip ssh | include Modulus", and if output bit size "Modulus Size : nnnn bits" is  than 2048  it gets flagged.
I was looking at Baseline and Compliance but can't seem to be used in this way.
Is it matter of just sending Configlet to IOS-XE devices and check output? 

Thanks,