Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Open service 172.217.208.121:443 · api.histopathai.com
2026-01-09 14:45
HTTP/1.1 404 Not Found content-type: text/plain x-cloud-trace-context: d8d84ecc4ee1cedc17d720de3ecbff33 date: Fri, 09 Jan 2026 14:45:51 GMT server: Google Frontend Content-Length: 18 Connection: close 404 page not found
Open service 172.217.208.121:443 · api.histopathai.com
2026-01-02 18:08
HTTP/1.1 404 Not Found content-type: text/plain x-cloud-trace-context: ea2d7adcd38d494de19d5245e735986c date: Fri, 02 Jan 2026 18:08:52 GMT server: Google Frontend Content-Length: 18 Connection: close 404 page not found
Open service 172.217.208.121:443 · api.histopathai.com
2025-12-23 08:35
HTTP/1.1 404 Not Found content-type: text/plain x-cloud-trace-context: b6dec39cf4724f8dc1634387b4e983b7 date: Tue, 23 Dec 2025 08:35:18 GMT server: Google Frontend Content-Length: 18 Connection: close 404 page not found
Open service 172.217.208.121:443 · api.histopathai.com
2025-12-21 10:24
HTTP/1.1 404 Not Found content-type: text/plain x-cloud-trace-context: 869ec6caf5329b9144f418d4611027dc date: Sun, 21 Dec 2025 10:24:29 GMT server: Google Frontend Content-Length: 18 Connection: close 404 page not found