Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43617df6ccdbeb7f4c8ff1769acbde432ae4bd5f24
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /api/philistore/giftcards GET /api/philistore/parcels GET /api/philistore/parcels/expired POST /api/auth POST /api/philistore/giftcards/increase POST /api/philistore/parcels/pickedup POST /api/philistore/parcels/receiveatstore POST /api/philistore/parcels/returntowarehouse POST /api/philistore/parcels/testsetstatus
Open service 95.101.111.146:443 · api-rest.philibertnet.com
2026-01-23 11:48
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Fri, 23 Jan 2026 11:48:36 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 23 Jan 2026 11:48:36 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AqoARo_xD3Z5R6OeiF88Us8zngYkU-fz4.Y5yEiYBpJEXFwogikWfCVO8N%2FN9811rf%2FLZFDrv1Jm0; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=278 Server-Timing: origin; dur=6 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1769168916422_35115142_142291837_28483_12630_0_67_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 95.101.111.146:443 · api-rest.philibertnet.com
2026-01-09 21:44
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Fri, 09 Jan 2026 21:44:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 21:44:17 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3A7l9XZJqqimXPhrIzTKIHuroSBOMsjzrq.kyP60AO%2F1A0On9eD72JBR8YmA8hJB0MuLj6JgEDmY48; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=193 Server-Timing: origin; dur=7 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767995056704_35115154_680745191_19994_10219_149_225_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 2.16.183.10:443 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Sun, 04 Jan 2026 12:28:18 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:18 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AB8Uz0cOIs6-7D7z2qomMsxzkkhZRWvTK.ZHZRLEIim6Ut9cO6dzqvLLloxi4Liox%2F7m7ec18Vh1k; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=31 Server-Timing: origin; dur=6 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767529697864_34610629_3949645296_3726_3869_97_105_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 2.16.183.5:80 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://api-rest.philibertnet.com/ Expires: Sun, 04 Jan 2026 12:28:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:20 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767529700349_34610629_3949655326_7_3925_8_0_-";dur=1
Open service 2a02:26f0:ab00::214:8e59:80 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://api-rest.philibertnet.com/ Expires: Sun, 04 Jan 2026 12:28:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:20 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767529700910_34901589_374658797_13_6253_147_0_-";dur=1
Open service 2.16.183.10:80 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://api-rest.philibertnet.com/ Expires: Sun, 04 Jan 2026 12:28:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:20 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767529700978_34610634_3426137724_7_3765_164_0_-";dur=1
Open service 2.16.183.5:443 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Sun, 04 Jan 2026 12:28:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:17 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3ASSYeLpob6Y1IRRMhA-0aldkbLhQOwDNh.RZiE%2Bf9RkvWkXcSfm%2BEEUR8zbxQoqbVdiW8OXh8f0mg; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=10 Server-Timing: origin; dur=6 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767529697647_34610629_3949643954_1601_3921_17_19_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 2a02:26f0:ab00::214:8e72:80 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://api-rest.philibertnet.com/ Expires: Sun, 04 Jan 2026 12:28:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:20 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767529700550_34901614_1335086111_15_7747_80_0_-";dur=1
Open service 2a02:26f0:ab00::214:8e59:443 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Sun, 04 Jan 2026 12:28:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:17 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AUVDWR8HDXFRGWb9WSA9xpdGg_Ppc48u8.fWItmIak2264vD%2FnoALi%2F5H5MJsnoEBGJ8AQVQYCliw; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=4 Server-Timing: origin; dur=7 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767529697835_34901589_374656320_1123_6930_79_83_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 2a02:26f0:ab00::214:8e72:443 · api-rest.philibertnet.com
2026-01-04 12:28
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Sun, 04 Jan 2026 12:28:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 04 Jan 2026 12:28:17 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AOIjzNv4PMR8TZvQcx0vMAOSsg3YlYhYf.v2Ts15NUREEx8lwg7L%2FS1Kmke%2FDb%2FlymNh9ayKCCqSs; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=133 Server-Timing: origin; dur=16 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767529697512_34901614_1335083387_14887_7546_0_5_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 95.101.111.146:443 · api-rest.philibertnet.com
2026-01-02 12:02
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Fri, 02 Jan 2026 12:02:01 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 02 Jan 2026 12:02:01 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AOM3w_8Exwl_i2ED0o1yKk43lz5f9CrMU.%2FnwBIUvSc4W6dvoWfvky7yqdqDrS4Fa%2BaJFeU8vWT7Y; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=6 Server-Timing: origin; dur=5 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1767355320933_35115154_340733645_1125_7742_148_167_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>
Open service 95.101.111.146:443 · api-rest.philibertnet.com
2025-12-22 13:04
HTTP/1.1 404 Not Found Content-Type: text/html; charset=utf-8 Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: DNT,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization Access-Control-Expose-Headers: Content-Length,Content-Range Expires: Mon, 22 Dec 2025 13:04:45 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 22 Dec 2025 13:04:45 GMT Content-Length: 139 Connection: close Set-Cookie: connect.sid=s%3AI8EtrWkp13fqVytb3RrhLZ1IVcFNrMiZ.Isqhh2qSHk82GcCQONZPrXMVEfTOi0Kj1m1l0B9o7N4; Path=/; HttpOnly Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=7 Server-Timing: origin; dur=14 Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1766408685419_35115142_192605707_2125_6686_145_148_-";dur=1 Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html>