Introduction
These terms of use set out the rules for using appsecsanta.com and any services delivered by it (the “Website”).
PLEASE READ THEM CAREFULLY BEFORE USING THE WEBSITE. BY USING THE WEBSITE, YOU AGREE TO COMPLY WITH AND BE BOUND BY THESE TERMS OF USE. IF YOU DO NOT AGREE TO BE BOUND BY THESE TERMS OF USE, YOU MUST NOT USE THE WEBSITE.
Who We Are and How to Contact Us
appsecsanta.com is owned and operated by CNT Friends Oy (“we”, “our” or “us”).
We are registered in Finland under company number 2993839-3 and have our registered office at Hitsaajankatu 13, Helsinki 00810.
To contact us, please email suphi@cnt.fi.
Other Terms That Apply to Your Use of the Website
Our Privacy Policy sets out the terms on which we process any personal information we may collect from you, or that you provide to us.
By using the Website, you consent to such processing and you warrant that all data provided by you is accurate.
Disclaimers
You agree that use of the Website is at your own risk.
In particular, you understand that:
You are responsible for complying with applicable laws: We are not an application security scanning service and we do not endorse the use of application security scanning tools for unlawful means. You should ensure you adhere to all applicable laws and terms of service when using an application security scanning tool. Certain third-party content providers prohibit the use of application security tools to access their services and it is your responsibility to ensure that your use of any application security scanning services for any particular purpose is lawful.
You should not rely on content presented on the Website: The content on the Website is provided for general information only. It is not intended to amount to technical, financial, or legal advice or any other type of advice on which you should rely. In particular, it does not constitute an invitation or authorization to use application security scanning tools for unlawful purposes nor does it constitute legal advice on the lawfulness of their use for any particular purpose.
Information on the Website may be incomplete or out of date: Although we make reasonable efforts to update the information on the Website, we make no representations, warranties or guarantees, whether express or implied, that the content on the Website is accurate, complete or up to date. We are under no obligation to update information on the Website.
We are not responsible for websites we link to: Where the Website contains links to other sites and resources provided by third parties, these links are provided for your information only. We have no control over the contents of those sites or resources.
Independence disclaimer: appsecsanta.com is an independent comparison and review site. Reviews are editorially independent — no vendor pays, sponsors, or otherwise influences the rankings, placement, or assessments of any tool. Any commercial relationships the Website has (for example, affiliate links, sponsored placements, or paid partnerships) are disclosed on the pages where they apply and do not influence editorial decisions. The ordering and assessments of application security tools are based on our editorial evaluation criteria as described on our Methodology page. While we strive for objectivity, all reviews reflect editorial judgment and should not be treated as the sole basis for purchasing decisions.
Age restriction: You must be at least 18 years of age to use this Website.
Free Security Tools — Acceptable Use
The Website offers free, browser-based security tools, including the Security Headers Checker, DNS Security Checker, SSL/TLS Checker, Subdomain Finder, and CSP Generator (the “Tools”). The Tools are provided as a convenience, “as is” and without warranty of any kind.
By using the Tools, you agree to the following:
Authorization required: You will only submit domains, hostnames, or URLs that you own or that you have explicit written permission from the owner to test. Running unauthorized scans against third-party systems may violate the Computer Fraud and Abuse Act (in the US), the Computer Misuse Act (in the UK), Finnish criminal law, and equivalent legislation in other jurisdictions. You are solely responsible for ensuring your use of the Tools is lawful.
No vulnerability testing: The Tools perform non-intrusive, read-only checks (HTTP headers, DNS lookups, TLS handshakes, Certificate Transparency queries). You must not attempt to use, extend, or combine the Tools to perform intrusive scans, exploitation, brute-force attempts, denial-of-service attacks, or any other activity that places load on or attempts to compromise a target system.
Rate limiting and fair use: The Tools are rate-limited per IP address to prevent abuse. You must not attempt to circumvent rate limits, automate the Tools at scale, resell access, or integrate the Tools into your own commercial offering without written permission.
No guarantee of accuracy: Results returned by the Tools are informational only. Grades, scores, and findings reflect automated checks against public data and may be incomplete, inaccurate, or out of date. The Tools are not a substitute for a professional security assessment, penetration test, or compliance audit, and results should not be relied upon as the sole basis for any security or compliance decision.
No support obligation: We may modify, throttle, suspend, or withdraw any of the Tools at any time without notice.
We May Make Changes to These Terms and This Website
We amend these terms from time to time.
Such revised terms will apply to the Website from the date of publication.
Every time you wish to use the Website, please check these terms to ensure you understand the terms that apply at that time.
We may update and change the Website from time to time to reflect changes to our users’ needs and our business priorities.
We May Suspend or Withdraw the Website
The Website is made available free of charge.
We do not guarantee that the Website, or any content on it, will always be available or be uninterrupted.
We may suspend or withdraw or restrict the availability of all or any part of the Website for business and operational reasons.
How You May Use Material on the Website
You may use the Website and its contents for your own personal, non-commercial use only.
You must not use any part of the content on the Website for commercial purposes without obtaining a licence to do so from us or our licensors.
We are the owner or the licensee of all intellectual property rights in the Website, and in the material published on it.
Those works are protected by copyright laws and treaties around the world.
All such rights are reserved.
Newsletter Subscription
The Website offers a free weekly newsletter, “AppSec Santa Weekly,” covering changelog analysis and category trends across application security tools. By submitting your email address through the subscription form, you agree that:
- You are providing a valid email address that belongs to you, or one you are authorized to use.
- We will send the newsletter to the address provided, typically on a weekly cadence, together with occasional operational messages relating to your subscription.
- The subscription form is protected by Cloudflare Turnstile to prevent automated abuse. Submitting the form requires completing the Turnstile challenge.
- You may unsubscribe at any time using the unsubscribe link included in every newsletter email, or by emailing
suphi@cnt.fi. Unsubscribing removes your email address from our mailing list. - The newsletter is provided free of charge. It is not guaranteed to be delivered on any particular schedule, and we may pause, modify, or discontinue it at any time.
- Newsletter content is provided for general information only and is subject to the same disclaimers set out above. You should not rely on it as technical, financial, or legal advice.
How we process your email address and other subscription data is described in our Privacy Policy.
Our Responsibility for Loss or Damage Suffered by You
We do not exclude or limit in any way our liability to you where it would be unlawful to do so.
This includes liability for death or personal injury caused by our negligence or the negligence of our employees, agents or subcontractors and for fraud or fraudulent misrepresentation.
Please note that we only provide the Website for domestic and private use.
You agree not to use the Website for any commercial or business purposes, and we have no liability to you for any loss of profit, loss of business, business interruption, or loss of business opportunity.
We Are Not Responsible for Viruses and You Must Not Introduce Them
While we try to make sure that the Website is free from bugs, errors, viruses and other malware, we cannot guarantee that it will be.
You are responsible for configuring your information technology, computer programmes and platform to access our site.
You should use your own virus protection software.
You must not misuse the Website by knowingly introducing viruses, trojans, worms, logic bombs or other material that is malicious or technologically harmful.
You must not attempt to gain access to the server on which the Website is stored or any server, computer or database connected to the Website.
Which Country’s Laws Apply to These Terms of Use?
These terms of use, their subject matter and their formation, are governed by Finnish law.
However, your statutory rights are unaffected.
You and we both agree that the courts of Finland will have exclusive jurisdiction for any disputes or matters relating to the Website, unless you are a consumer and resident outside of Finland.
Our Agreement Is With You Only
No one other than a party to these terms has any right to enforce any of these terms of use.
You may not transfer, assign or otherwise dispose of your rights and obligations under these terms of use to another person or legal entity.
Our Brand
AppSec Santa is a trading name owned by CNT Friends Oy.