Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035490cc7b60478b9152c24a600dc6a0c237f06cafa31
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /admins
GET /admins/me
GET /orders
GET /services
GET /services/{serviceId}
POST /api/hiring
POST /auth/refresh-token
POST /auth/send-code
POST /auth/verify-code
POST /join
POST /orders/{serviceId}
PUT /orders/{orderId}/execute
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035490cc7b60478b9152c24a600dc6a0c237f06cafa31
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /admins
GET /admins/me
GET /orders
GET /services
GET /services/{serviceId}
POST /api/hiring
POST /auth/refresh-token
POST /auth/send-code
POST /auth/verify-code
POST /join
POST /orders/{serviceId}
PUT /orders/{orderId}/execute
Open service 76.223.11.49:443 · api.aldiarconsult.com
2026-01-09 22:45
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Fri, 09 Jan 2026 22:45:54 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Nl%2BWNOFMnP7zew9ahTelgLlhsYZ8lYN1ZMqlZOydgc0%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767998754"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Nl%2BWNOFMnP7zew9ahTelgLlhsYZ8lYN1ZMqlZOydgc0%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767998754"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 15.197.129.158:80 · api.aldiarconsult.com
2026-01-09 07:25
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Fri, 09 Jan 2026 07:26:41 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FyqMOgD7Fk99wDVDXtfO%2BOP0hKKzn%2F1eMKhtmVsC6nM%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767943601"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FyqMOgD7Fk99wDVDXtfO%2BOP0hKKzn%2F1eMKhtmVsC6nM%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767943601"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 15.197.129.158:80 · api.aldiarconsult.com
2026-01-02 14:24
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Fri, 02 Jan 2026 14:24:50 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=epcQ5wcCXmTp5M50fcFk41XK8%2F284qDpmrZ257bvP%2BY%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767363890"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=epcQ5wcCXmTp5M50fcFk41XK8%2F284qDpmrZ257bvP%2BY%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767363890"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 76.223.11.49:443 · api.aldiarconsult.com
2025-12-30 12:15
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Tue, 30 Dec 2025 12:15:45 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=fzi9rng4VIouDa%2FETcM%2FYYqD6cXrjPbXajIKN%2FTPuLw%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767096945"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=fzi9rng4VIouDa%2FETcM%2FYYqD6cXrjPbXajIKN%2FTPuLw%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767096945"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 15.197.129.158:80 · api.aldiarconsult.com
2025-12-23 02:53
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Tue, 23 Dec 2025 02:53:46 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=7aJjdJjfcZt%2FCYvXoRbqI1zvHbg7eFXwZmc%2BSTT9iTI%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766458426"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=7aJjdJjfcZt%2FCYvXoRbqI1zvHbg7eFXwZmc%2BSTT9iTI%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766458426"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 76.223.11.49:443 · api.aldiarconsult.com
2025-12-22 22:12
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Mon, 22 Dec 2025 22:12:42 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=RXxtKEHrQhOiOI%2BU%2BkKRF89SJ6y%2FvtYKtCN1SPcDJjA%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766441563"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=RXxtKEHrQhOiOI%2BU%2BkKRF89SJ6y%2FvtYKtCN1SPcDJjA%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766441563"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 76.223.11.49:443 · api.aldiarconsult.com
2025-12-21 03:52
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Sun, 21 Dec 2025 03:52:58 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=r9HMWvcdAXJukiVHhTo9DzIjMdrUfVjmjZ6pzU2%2Bm0M%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766289179"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=r9HMWvcdAXJukiVHhTo9DzIjMdrUfVjmjZ6pzU2%2Bm0M%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766289179"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 15.197.129.158:80 · api.aldiarconsult.com
2025-12-20 12:57
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Sat, 20 Dec 2025 12:57:54 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=BfLnFkFlgwAY4JAsmKtT1EmCG2JuSXNZAztWJCCidQA%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766235475"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=BfLnFkFlgwAY4JAsmKtT1EmCG2JuSXNZAztWJCCidQA%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766235475"
Server: Heroku
Via: 1.1 heroku-router
Connection: close
Open service 76.223.11.49:443 · api.aldiarconsult.com
2025-12-19 02:48
HTTP/1.1 404 Not Found
Content-Length: 0
Date: Fri, 19 Dec 2025 02:48:22 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=fQ0oIeh3Jk3J65MPORs%2FjsXE%2FzNMk6JQ8RGOKhW4MJ4%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766112503"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=fQ0oIeh3Jk3J65MPORs%2FjsXE%2FzNMk6JQ8RGOKhW4MJ4%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766112503"
Server: Heroku
Via: 1.1 heroku-router
Connection: close