nclex.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- vjs.zencdn.net×2
- www.googletagmanager.com×2
- ajax.googleapis.com×1
- cdn.jsdelivr.net×1
- fonts.googleapis.com×1
- static.zdassets.com×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1998-01-16
- Expires
- 2027-01-15 240 days left
- Updated
- 2026-04-10
- Name servers
-
- ns1-06.azure-dns.com
- ns2-06.azure-dns.net
- ns3-06.azure-dns.org
- ns4-06.azure-dns.info
DNS records live
- NS
-
- ns1-06.azure-dns.com
- ns2-06.azure-dns.net
- ns3-06.azure-dns.org
- ns4-06.azure-dns.info
- TXT
-
google-site-verification=am9ANpajF4fjAaGBKzd3BDioOV8hWKrTzi7zqoG50Y0
Email authentication no MX
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.emailpolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://api.smooch.io https://www.googleadservices.com https://static.zdassets.com https://cdn.cookielaw.org privacyportal.onetrust.com geolocation.onetrust.com https://pm.geniusmonkey.com https://cdn.jsdelivr.net https://www.gstatic.com www.google-analytics.com www.google.com www.googletagmanager.com tagmanager.google.com https://ajax.googleapis.com www.googleadservices.com googleads.g.doubleclick.net vjs.zencdn.net connect.facebook.net https://dnn506yrbagrg.cloudfront.net https://pm.geniusmonkey.com https://t.ztsrv.com https://cdn.ztsrv.com https://www.votervoice.net https://platform.twitter.com https://cdn.syndication.twimg.com https://s3.amazonaws.com https://ncsbn.us2.list-manage.com https://snap.licdn.com player.video.wowza.com cdn3.wowza.com https://cdn.flowplayer.com embed.flowplayer.com ; media-src 'self' blob: https://dev.ncsbn.org https://test.ncsbn.org https://ncsbn.org ncsbnmediaservices01str.blob.core.windows.net https://ncs- strict-transport-security
max-age=15724800; includeSubDomains