Heroku
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3b97cb8148bbf4ad8a5007ed44ab4d43b16198a7e
GraphQL introspection enabled at /graphql Types: 569 (by kind: ENUM: 2, INPUT_OBJECT: 264, OBJECT: 296, SCALAR: 7) Operations: - Query: Query | fields: checkBarCode, checkPricingProduct, checkStockCode, checkStructureRelation, fetchAbnDetails - Mutation: Mutation | fields: activateAccount, activateDriverAccount, approvePackingProduct, assignPicking, assignZonePickers - Subscription: Subscription | fields: assignmentComments, packageModified, vehicleWatchers Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Open service 76.223.57.73:443 · api-app.alphafresh.planetmedia.dev
2026-01-09 01:41
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=m4nr%2FVyDKv5JVNQNulGorvXwaJg827CzkPkpFtUwvMQ%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767922918"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=m4nr%2FVyDKv5JVNQNulGorvXwaJg827CzkPkpFtUwvMQ%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767922918"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 9c8494ae-c7d2-c733-e2ff-48d4b5616047
X-Runtime: 0.001057
Date: Fri, 09 Jan 2026 01:41:58 GMT
Connection: close
Open service 76.223.57.73:443 · api-app.alphafresh.planetmedia.dev
2026-01-01 19:55
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=J4xhSheikEgELqRgdZ98izdcuv%2Bs41pDkCdK16pzFhw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767297311"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=J4xhSheikEgELqRgdZ98izdcuv%2Bs41pDkCdK16pzFhw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767297311"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 2dd4cc97-eed0-aea1-4fc4-cb389ba8ef9c
X-Runtime: 0.000923
Date: Thu, 01 Jan 2026 19:55:11 GMT
Connection: close
Open service 76.223.57.73:443 · api-app.alphafresh.planetmedia.dev
2025-12-22 23:21
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=HrTCmeGgPLhx4tjc3QuW%2FVezZnfkNHafybv4MjpGtDw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766445666"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=HrTCmeGgPLhx4tjc3QuW%2FVezZnfkNHafybv4MjpGtDw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766445666"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 226687d1-e3e2-3f74-dcd8-408731dcba0a
X-Runtime: 0.000699
Date: Mon, 22 Dec 2025 23:21:06 GMT
Connection: close
Open service 76.223.57.73:443 · api-app.alphafresh.planetmedia.dev
2025-12-21 07:49
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=7uR%2FaJElR9B91OOSdEei0AoSE39mHEA3IfK%2FLpLWmBM%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766303360"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=7uR%2FaJElR9B91OOSdEei0AoSE39mHEA3IfK%2FLpLWmBM%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766303360"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 040f693c-c33f-75fd-1957-9b8f347c6092
X-Runtime: 0.000660
Date: Sun, 21 Dec 2025 07:49:20 GMT
Connection: close
Open service 76.223.57.73:443 · api-app.alphafresh.planetmedia.dev
2025-12-19 09:53
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=ein9X8TioE3ce2QPIJ8AucfQltEKPBQ%2BEFNutAsHlXo%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766138007"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=ein9X8TioE3ce2QPIJ8AucfQltEKPBQ%2BEFNutAsHlXo%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766138007"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 995ac85f-8813-673d-eeaf-15638d61d286
X-Runtime: 0.000650
Date: Fri, 19 Dec 2025 09:53:27 GMT
Connection: close