amsec.org

.org crawl

First seen 2026-04-21 · Last seen 2026-05-15 · ok HTTP/1.1 200 2222 ms crawled 2026-05-15

FR · 217.70.184.55 · AS29169 GANDI SAS

Reputation 92/100 no dmarc policy

sector tech type landing page

HTML metadata

Title
About AMSec - AMSec
Language
en-US
Generator
WordPress 6.8.3
Canonical
https://www.amsec.org/

Open Graph

url
https://www.amsec.org/
title
About AMSec - AMSec
locale
en_US
site name
AMSec
description
AMSec is the Amsterdam Cyber Security Center. It  brings together experts from a variety of disciplines to study all aspects of cyber security. In particular, AMSec recognizes that cyber security needs not just the technical expertise to detect and stop attacks (or better still, prevent them), but also laws and regulations to deal with cyber … Continue reading About AMSec →

Technology

CDN
Amazon CloudFront
Server
CloudFront
CMS
WordPress

Third-party hosts loaded (1)

  • gmpg.org×1

Registration

Registrar
Gandi SAS
Created
2018-08-27
Expires
2027-08-27 463 days left
Updated
2025-08-25
Name servers
  • ns-101-c.gandi.net
  • ns-140-b.gandi.net
  • ns-221-a.gandi.net

DNS records live

NS
  • ns-101-c.gandi.net
  • ns-140-b.gandi.net
  • ns-221-a.gandi.net
MX
  • 10 spool.mail.gandi.net
  • 50 fb.mail.gandi.net

Email authentication weak

SPF
v=spf1 include:_mailcust.gandi.net ?all
neutral (?all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

Gandi RSA Domain Validation Secure Server CA 3
from 2025-09-29 to 2026-10-26
Expires in 158 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.amsec.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https:; style-src 'self' 'unsafe-inline' https:; font-src 'self' data: https:; frame-src 'self' https:; img-src 'self' data: https:; connect-src 'self' https:; frame-ancestors *;
strict-transport-security
max-age=600
cross-origin-opener-policy
same-origin-allow-popups
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
cross-origin

Links to (1)

Linked from (2)