nnva.gov

.gov user

First seen 2026-05-18 · Last seen 2026-05-18 · ok HTTP/1.1 200 1361 ms crawled 2026-06-02

US · 20.114.211.29 · AS8075 Microsoft Corporation

Reputation 94/100 dmarc monitor-only

sector government type homepage

HTML metadata

Title
Newport News, VA - Official Website | Official Website
Description
Visit the official home page of Newport News, Virginia. Find free events, conduct business online and view our open data for your research needs.
Language
en

Technology

CDN
Cloudflare
jQuery
3.7.1

Third-party hosts loaded (3)

  • www.nnva.gov×41
  • apps.nnva.gov×1
  • docaccess.com×1

Contact

Phone

Registration

Registrar
get.gov
Created
2014-06-18
Expires
2027-05-19 342 days left
Updated
2026-04-25
Name servers
  • nspub1.nnva.gov
  • nspub2.nnva.gov
  • nspub3.nnva.gov
  • nspub4.nnva.gov

DNS records live

NS
  • nspub1.nnva.gov
  • nspub2.nnva.gov
  • nspub3.nnva.gov
  • nspub4.nnva.gov
MX
  • 10 nnva-gov.mail.protection.outlook.com
TXT
  • 7/8zY7kTPIbgApbvor74vkOWRiZzA/I/Uf6xv5Bh8b4GIGNLeiDxJHryC1AnpVNXiqK0dgr8KBr5Dz9YL2vvHg==
  • 5MWCGoa5TlzHdNaufLkIjFwisA9P+WDDGNRmm7T5hUhiDRc7SJBo/hdDXNqUpsgzkeChq3VGorZrS6crrs6Ajw==
Verified for
  • DocuSign
  • Google
  • Microsoft 365
  • Sprout Social
  • Zoom

Email authentication partial

SPF
v=spf1 mx ip4:216.54.23.130 ip4:149.72.180.245 ip4:149.72.196.66 ip4:149.72.231.47 include:_spf.psm.knowbe4.com include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDfou1wr7YVo3punYCac1/6pDIB/8WXJfZEdckOY4AUCnNVV0ogKzRc3xAQo4RSWUJpaYF5/OrLC5BBZv3uFw…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA821WWLND9g93ptPRLCe52jvVROAw2X1jd7lpx7EoJSKRxK8J8/zLYyGsLNV1OsJGP/D3FUEQgnKSXKu73+…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcdAoh2V4UaiOaRKtjdB5OFtx5sBO5TpQHWkCUHrCXL1HdfOBWEibThj+fVbYQ9/Ky/qrJwaxwWzYPfUxGGqTUzk…
selectors probed

Certificate (current)

R13
from 2026-04-02 to 2026-07-01
Expires in 21 days

HTTP security headers

Header hygiene 50/100 Checked live page: https://www.nnva.gov//

present
  • content-security-policy
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.granicus.com https://platform.civicplus.com https://account.civicplus.com https://analytics.civicplus.com; img-src * data: blob:; worker-src * data: blob: 'unsafe-eval' 'unsafe-inline'; script-src * about: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; media-src * blob:; font-src * data:; default-src *

Links to (11)

Use this data via API

Everything on this page for nnva.gov is available as JSON from the indexo.dev REST & MCP API.

curl "https://indexo.dev/api/v1/domains/nnva.gov" \
  -H "X-API-Key: idx_..."

Read the docs & get a free key →