nchsi.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Termly
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- fonts.googleapis.com×2
- ajax.googleapis.com×1
- app.termly.io×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2000-12-01
- Expires
- 2026-12-01 194 days left
- Updated
- 2025-10-09
- Name servers
-
- may.ns.cloudflare.com
- oswald.ns.cloudflare.com
DNS records live
- NS
-
- may.ns.cloudflare.com
- oswald.ns.cloudflare.com
- MX
-
- 10 nchsi-com.mail.protection.outlook.com
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.elasticemail.com -allstrict (-all) - DMARC
-
v=DMARC1;p=none; rua=mailto:6e7c6665a19342beb116e47ae13fb842@dmarc-reports.cloudflare.net;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCvYx0mR53ALoWrNHAHh1fEXVsrbXr5n8MUdlvJlutOXehhjnfkW+Tf6oHoPfrRV5RwusePctxan4iNJw1x/Z…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://ajax.googleapis.com https://app.termly.io https://www.googletagmanager.com/gtm.js https://www.google.com/recaptcha/api.js https://www.gstatic.com/recaptcha/releases/ https://www.gstatic.com/charts/ https://www2.cyranoapp.media/ https://static.cloudflareinsights.com/; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://www.gstatic.com https://www.googletagmanager.com/ https://www2.cyranoapp.media; object-src 'none'; base-uri 'self'; connect-src 'self' https://app.termly.io https://*.api.termly.io https://www2.cyranoapp.media https://www.google.com/recaptcha/api2/; font-src 'self' https://fonts.gstatic.com data:; form-action 'self'; frame-ancestors 'self'; frame-src 'self' https://www.google.com/ https://www.youtube.com; img-src 'self' data: https://www.nchsi.com https://riverbendhospital.com https://www.googletagmanager.com/ https://www.gravatar.com https://i.ytimg.com https://img.youtube.com https://placeho- strict-transport-security
max-age=2592000