lopp.net

.net crawl

First seen 2026-04-16 · Last seen 2026-05-11 · ok HTTP/1.1 200 3552 ms crawled 2026-05-11

US · 74.208.236.54 · AS8560 IONOS SE

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Jameson Lopp :: Professional Cypherpunk
Description
Jameson Lopp: cypherpunk, co-founder & Chief Security Officer of Casa, Bitcoin proponent
Language
en

Open Graph

url
https://www.lopp.net/
title
Jameson Lopp
description
Jameson Lopp: cypherpunk, co-founder & Chief Security Officer of Casa, Bitcoin proponent

Technology

CDN
Cloudflare
Analytics
  • Google Analytics
Ads
  • Google Ads (DoubleClick)

Third-party hosts loaded (3)

  • cse.google.com×1
  • stats.g.doubleclick.net×1
  • www.google-analytics.com×1

Social

Registration

Registrar
IONOS SE
Created
2000-01-21
Expires
2027-01-21 246 days left
Updated
2026-01-22
Name servers
  • ns1036.ui-dns.biz
  • ns1036.ui-dns.com
  • ns1036.ui-dns.de
  • ns1036.ui-dns.org

DNS records live

NS
  • ns1036.ui-dns.biz
  • ns1036.ui-dns.com
  • ns1036.ui-dns.de
  • ns1036.ui-dns.org
MX
  • 10 mx00.ionos.com
  • 10 mx01.ionos.com
TXT
  • google-site-verification=R0dzeFRj3Xe_EeN3ckdmdqfm7tbk27eyWcfmTvWtfzE

Email authentication partial

SPF
v=spf1 include:_spf.perfora.net include:_spf-us.ionos.com include:_spf.kundenserver.de ~all
softfail (~all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-04-07 to 2026-10-19
Expires in 152 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://www.lopp.net/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
content-security-policy
script-src 'self' https://*.google.com https://*.withgoogle.com https://*.googleadservices.com 'unsafe-inline' 'unsafe-eval'; base-uri 'self';
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (9)

Linked from (1)