惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

美团技术团队
Blog — PlanetScale
Blog — PlanetScale
阮一峰的网络日志
阮一峰的网络日志
M
MIT News - Artificial intelligence
月光博客
月光博客
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
U
Unit 42
博客园_首页
WordPress大学
WordPress大学
H
Hackread – Cybersecurity News, Data Breaches, AI and More
J
Java Code Geeks
F
Fortinet All Blogs
腾讯CDC
罗磊的独立博客
IT之家
IT之家
I
InfoQ
V
V2EX
博客园 - 叶小钗
A
About on SuperTechFans
Y
Y Combinator Blog
C
Check Point Blog
量子位
Martin Fowler
Martin Fowler
Vercel News
Vercel News

Show HN

Show HN: AI agents for UK GDAD PCF roles and their skills The Two Pillars: Mixer Mode and Meta-Software in the Reorganization of Software Work After AI GitHub - JaiCode08/teleport-env What 1,000+ Harness Experiments Taught Me About Self-Improving Agents Show HN: Liiists, a Markdown-first, iOS and CLI list app SwiperTab – Get this Extension for 🦊 Firefox (en-US) GitHub - kouhxp/fftext: Summarize, explain, fact-check, or translate any text, URL, or file. No GPU. No cloud. One command GitHub - sweetpad-dev/sweetpad: Develop Swift/iOS projects using VSCode GitHub - dogmaticdev/IRON: IRON a.k.a. Intermediate Representation Object Notation is a Interpreter/Database that is used to create Programming Languages. GitHub - sjhalani7/vaen: Package your AI coding harness into a portable .agent file, and share it across repos, teams, & the community without ever having to copy-paste instructions, skills, MCP config, or secrets. Show HN: Gandalf the Grader Show HN: Citadeld – replay any CI failure locally from a single file GitHub - tdortman/cuSBF: High-Performance GPU Super Bloom Filter coral-ai/claude-code-token-xray at main · Coral-Bricks-AI/coral-ai GitHub - ulyssestenn/funes: Funes is a Git-based framework for LLM-managed knowledge work: an AI Librarian ingests raw sources, builds an interlinked Markdown knowledge base, and uses it to produce cited reports, analyses, and other outputs. GitHub - ThatXliner/gah: Git Add Hunk, built for agents to use GitHub - harmont-dev/harmont-cli: Command-line client for the Harmont CI platform GitHub - brooksmcmillin/mcp-authflow: OAuth 2.0 Authorization Server framework for MCP servers GitHub - javaid-codes/audit-supply-chain-agents GitHub - amorey/gochan: A small library of common channel architectures for Go, inspired by Rust GitHub - arifozgun/OpenGem: Free, Open-Source AI API Gateway with Gemini, OpenAI & Anthropic Compatibility in 1 file GitHub - Pranesh950/BioPetals: 🌸 Run BIOxAI models at home, BitTorrent-style. Fine-tuning and inference up to 10x faster than offloading GitHub - cnguyen14/bounty-doctor: Diagnose a GitHub bounty issue before you waste hours: detects honeypot scam repos, AI-bot attempt swarms, and stale contests. Show HN: CoreMCP – MCP Server for On-Prem DBs Show HN: KittyHTML – Render HTML/CSS as an inline image in your terminal GitHub - bingud/filemat: Web-based file manager Show HN: TruthLens – Free multi-signal deepfake image detector GitHub - apexlocal-jz/claude-usage-tray: Windows system-tray app showing your Claude Code rate-limit usage at a glance. Zero deps, ~300 lines of PowerShell. Cross-IDE (works regardless of VS Code, Cursor, plain terminal). Release v0.1.2.1 · kouhxp/yapsnap GitHub - noopolis/moltnet: Self-hostable chat network for AI agents. Pre-built bridges for Claude Code, Codex, and the Claws. Rooms, DMs, history. No Slack bots, no Matrix, no glue code.
NIS2 Email Authentication Readiness — Article 21 Scorecar...
meysamazad · 2026-06-16 · via Show HN

EU · NIS2

Check your domain against the NIS2 Article 21 email-authentication controls. NIS2 is in force EU-wide (transposition deadline was 17 Oct 2024) and national enforcement is rolling out — Germany's NIS2UmsuCG went live 6 Dec 2025. Maps DMARC, SPF, MTA-STS, TLS-RPT, and DNSSEC to the specific paragraphs auditors reference.

Why this matters now

The NIS2 Directive is in force across the EU — the transposition deadline was 17 October 2024 and national enforcement is rolling out now (Germany's NIS2UmsuCG went live 6 December 2025, with more Member States following in 2026). Essential and important entities — roughly anything from mid-market manufacturing to managed-service providers in 18 sectors — must demonstrate the technical and organisational measures listed in Article 21 §2. Three of the ten measures map directly to email authentication:

  • §2(d) supply-chain security — auditors expect you to verify that DNS-borne identity (DMARC, SPF, DKIM) cannot be spoofed upstream. DNSSEC is the answer.
  • §2(g) basic cyber hygiene — the standing example from EU Commission Implementing Regulation 2024/2690 is "deploy SPF, DKIM, and DMARC to prevent business-email compromise."
  • §2(h) cryptography and encryption — covers encryption in transit for email, which translates to MTA-STS in enforce mode and TLS-RPT for visibility.

What this tool does

Run a domain through the scanner above. Each control is checked against the NIS2 baseline derived from the Commission's worked example and the national transposition guidance published by ANSSI (France), BSI (Germany), and CCB (Belgium). Every result links to a deeper protocol checker if you need to see the raw record.

The scan runs entirely in your browser via Cloudflare DoH. Nothing is sent to our servers and nothing is stored. If you want the same scorecard packaged as an auditor-ready PDF with a NIS2 control cross-walk, the paid tier emails it on a weekly cadence.

Article 21 §2 quick reference

Paragraph What it requires Email-auth control
§2(a) Risk-analysis & information-system security policies Out of scope for this tool
§2(b) Incident handling DMARC rua reports feed your IR process
§2(d) Supply-chain security DNSSEC for upstream record integrity
§2(g) Basic cyber hygiene & training DMARC + SPF + DKIM
§2(h) Cryptography & encryption MTA-STS enforce + TLS-RPT

Scope check — does this apply to you?

NIS2 covers essential entities (energy, transport, banking, healthcare, ICT services, public administration, and more) and important entities (manufacturing, food, postal services, digital providers, research). If your organisation is over 50 employees and operates in any of the 18 listed sectors, you are almost certainly in scope. National transpositions narrow the definition — Germany's NIS2UmsuCG, for example, supervises ~29,500 entities through BSI; France routes through ANSSI. The first registration deadline for most Member States is mid-2026.

What this tool does not cover

Article 21 is broader than email. The seven §2 paragraphs not listed above — risk policies, incident reporting timelines, business continuity, vulnerability handling, access control, asset management, MFA — are organisational and process controls that DNS cannot speak to. Use this scorecard as the evidence pack for the email-specific portion of an Article 21 audit, not as a full NIS2 gap analysis.

Read the complete EU · NIS2 guide to learn more.