Heroku
tcp/443 tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa30080bac2bb172bd2a03acbea7b2404e0b11bebf8
GraphQL introspection enabled at /graphql Types: 157 (by kind: ENUM: 2, INPUT_OBJECT: 41, OBJECT: 110, SCALAR: 4) Operations: - Query: RootQueryType | fields: adminIndexBranches, adminIndexEmployees, adminIndexToppings, adminSingleBranch, adminSingleEmployee - Mutation: Mutation | fields: adminCreateEmployee, adminDeleteEmployee, adminGenerateSignature, adminUpdateEmployee, adminUpdateUser Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa30080bac2bb172bd2a03acbea7b2404e0b11bebf8
GraphQL introspection enabled at /graphql Types: 157 (by kind: ENUM: 2, INPUT_OBJECT: 41, OBJECT: 110, SCALAR: 4) Operations: - Query: RootQueryType | fields: adminIndexBranches, adminIndexEmployees, adminIndexToppings, adminSingleBranch, adminSingleEmployee - Mutation: Mutation | fields: adminCreateEmployee, adminDeleteEmployee, adminGenerateSignature, adminUpdateEmployee, adminUpdateUser Directives: deprecated, include, skip (total: 3)
Open service 76.223.11.49:80 · api.castello.is
2026-01-09 20:28
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Fri, 09 Jan 2026 20:29:25 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2BZ1%2FtbAeOFeePShiGBBXIar7QUs8TKXJne6dhHyQWOE%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767990565"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2BZ1%2FtbAeOFeePShiGBBXIar7QUs8TKXJne6dhHyQWOE%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767990565"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 99.83.217.1:443 · api.castello.is
2026-01-09 11:32
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Fri, 09 Jan 2026 11:32:45 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=1FDGvJL8A5E8Noz7m0Oxe2038k0vVTOB39byKq6Zaaw%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767958365"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=1FDGvJL8A5E8Noz7m0Oxe2038k0vVTOB39byKq6Zaaw%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767958365"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 76.223.11.49:80 · api.castello.is
2026-01-02 17:20
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Fri, 02 Jan 2026 17:20:44 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=p3ztLpMXS7mJ0keFp254HgLbNUzI5gLEbue7zwmeJ7w%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767374444"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=p3ztLpMXS7mJ0keFp254HgLbNUzI5gLEbue7zwmeJ7w%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767374444"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 99.83.217.1:443 · api.castello.is
2026-01-02 16:43
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Fri, 02 Jan 2026 16:43:37 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Qe79H%2BFulHUEVeBR5LCfDNQVZIrrW1v6g3lQOyDGNQA%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767372217"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Qe79H%2BFulHUEVeBR5LCfDNQVZIrrW1v6g3lQOyDGNQA%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767372217"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 99.83.217.1:443 · api.castello.is
2025-12-23 01:47
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Tue, 23 Dec 2025 01:47:06 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=uIArIVvhdmqasmW6soH6OEBr7ibShh4jLDuqfGmjQBU%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766454426"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=uIArIVvhdmqasmW6soH6OEBr7ibShh4jLDuqfGmjQBU%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766454426"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 76.223.11.49:80 · api.castello.is
2025-12-23 01:30
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Tue, 23 Dec 2025 01:30:37 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=fJrYYNGuuUwnxM1Zb3SzRIP97xwu%2Fw7ch4uqD2ve%2FuI%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766453437"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=fJrYYNGuuUwnxM1Zb3SzRIP97xwu%2Fw7ch4uqD2ve%2FuI%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766453437"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 99.83.217.1:443 · api.castello.is
2025-12-21 08:53
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Sun, 21 Dec 2025 08:53:38 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=VI4S68EBaAtZ%2BZvO0OCodRdAsO33ICzRvPA6RvSDxkU%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766307218"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=VI4S68EBaAtZ%2BZvO0OCodRdAsO33ICzRvPA6RvSDxkU%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766307218"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 76.223.11.49:80 · api.castello.is
2025-12-20 14:57
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Sat, 20 Dec 2025 14:57:04 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=HKYpSirjPMY9Ae1HNeshaAFsYEumpr36CTTBZiHR9dM%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766242624"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=HKYpSirjPMY9Ae1HNeshaAFsYEumpr36CTTBZiHR9dM%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766242624"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>
Open service 99.83.217.1:443 · api.castello.is
2025-12-19 04:57
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 139
Content-Security-Policy: default-src 'none'
Content-Type: text/html; charset=utf-8
Date: Fri, 19 Dec 2025 04:57:09 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=mZ4bbWjqwiXpFU2xOaQi8GmhKdfM03Ie30fhtBte%2BN8%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766120229"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=mZ4bbWjqwiXpFU2xOaQi8GmhKdfM03Ie30fhtBte%2BN8%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766120229"
Server: Heroku
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Powered-By: Express
Connection: close
Page title: Error
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>Error</title>
</head>
<body>
<pre>Cannot GET /</pre>
</body>
</html>