Heroku
tcp/443 tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa39fe05c1b5f1181593f8150e32795df9ff72fc9cb
GraphQL introspection enabled at /graphql Types: 31 (by kind: ENUM: 2, OBJECT: 24, SCALAR: 5) Operations: - Query: Query | fields: brand, company, me - Mutation: Mutation | fields: activateUser, changePassword, createOffer, createToken, refreshToken Directives: deprecated, include, skip (total: 3) Readable stores: 0
Open service 99.83.217.1:443 · api.leasingberegner.com
2026-01-09 21:59
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=55Nf3XJHFrJgVCiBFN3bqdQIzElT9S7TpCox3uZG7Io%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767995951"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=55Nf3XJHFrJgVCiBFN3bqdQIzElT9S7TpCox3uZG7Io%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767995951"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: c22c38cf-579e-0e03-68fd-1526ee79a918
X-Runtime: 0.001337
Date: Fri, 09 Jan 2026 21:59:11 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 99.83.217.1:443 · api.leasingberegner.com
2026-01-02 16:18
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=p0RMK2EMPpgL42120obEN9uPwMlGnt4EtaPM2HVL8%2BY%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767370724"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=p0RMK2EMPpgL42120obEN9uPwMlGnt4EtaPM2HVL8%2BY%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767370724"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: a7a92d7f-c9de-fcb2-69d8-9976d199e2e2
X-Runtime: 0.001015
Date: Fri, 02 Jan 2026 16:18:44 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 15.197.129.158:443 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=UJC5eRwWC%2BdrlcobAjstAP34DAJGjRfICzQ2jKaoscc%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139815"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=UJC5eRwWC%2BdrlcobAjstAP34DAJGjRfICzQ2jKaoscc%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139815"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 6a22d8ea-8a3e-704c-120b-6b635c0babc2
X-Runtime: 0.001321
Date: Wed, 31 Dec 2025 00:10:15 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 76.223.11.49:443 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=UJC5eRwWC%2BdrlcobAjstAP34DAJGjRfICzQ2jKaoscc%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139815"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=UJC5eRwWC%2BdrlcobAjstAP34DAJGjRfICzQ2jKaoscc%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139815"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: ebecbaa5-166f-9c62-53b4-f932718f8e26
X-Runtime: 0.000774
Date: Wed, 31 Dec 2025 00:10:15 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 99.83.217.1:443 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=eC0SFoAY%2BvpxtnLBkiEnC0f1%2BbVD8RzBfBEqU3Tu9EU%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139814"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=eC0SFoAY%2BvpxtnLBkiEnC0f1%2BbVD8RzBfBEqU3Tu9EU%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139814"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 34807e7a-c173-3a54-762d-e75cc3f512e2
X-Runtime: 0.000946
Date: Wed, 31 Dec 2025 00:10:14 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 15.197.129.158:80 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Content-Length: 0
Content-Type: text/html
Location: https://api.leasingberegner.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139817"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139817"
Server: Heroku
Via: 1.1 heroku-router
Date: Wed, 31 Dec 2025 00:10:17 GMT
Connection: close
Open service 75.2.43.161:443 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=eC0SFoAY%2BvpxtnLBkiEnC0f1%2BbVD8RzBfBEqU3Tu9EU%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139814"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=eC0SFoAY%2BvpxtnLBkiEnC0f1%2BbVD8RzBfBEqU3Tu9EU%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139814"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 673e66eb-4a7e-6cad-25ee-27bc3df033c6
X-Runtime: 0.001200
Date: Wed, 31 Dec 2025 00:10:14 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 99.83.217.1:80 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Content-Length: 0
Content-Type: text/html
Location: https://api.leasingberegner.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139817"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139817"
Server: Heroku
Via: 1.1 heroku-router
Date: Wed, 31 Dec 2025 00:10:17 GMT
Connection: close
Open service 75.2.43.161:80 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Content-Length: 0
Content-Type: text/html
Location: https://api.leasingberegner.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139817"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139817"
Server: Heroku
Via: 1.1 heroku-router
Date: Wed, 31 Dec 2025 00:10:17 GMT
Connection: close
Open service 76.223.11.49:80 · api.leasingberegner.com
2025-12-31 00:10
HTTP/1.1 301 Moved Permanently
Content-Length: 0
Content-Type: text/html
Location: https://api.leasingberegner.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1767139817"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=gnxbL1CxI4Ix34CkReLJEaI00bS%2BSZyYWOgkmJpUE0U%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1767139817"
Server: Heroku
Via: 1.1 heroku-router
Date: Wed, 31 Dec 2025 00:10:17 GMT
Connection: close
Open service 99.83.217.1:443 · api.leasingberegner.com
2025-12-23 09:16
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Gzjc6Bj1Pn%2Fv7IfzQ43URwM%2BwMrQ%2Fo%2B2SF1%2BroCRyzU%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766481381"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Gzjc6Bj1Pn%2Fv7IfzQ43URwM%2BwMrQ%2Fo%2B2SF1%2BroCRyzU%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766481381"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 6b4330da-410d-0206-9287-243526dce31b
X-Runtime: 0.001027
Date: Tue, 23 Dec 2025 09:16:21 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 99.83.217.1:443 · api.leasingberegner.com
2025-12-21 05:45
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=j7odK8bpC%2B9kC9fC65hrCk9eznYqvNKJdvfFP%2FO9Kqw%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766295902"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=j7odK8bpC%2B9kC9fC65hrCk9eznYqvNKJdvfFP%2FO9Kqw%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766295902"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 0f52c747-eda3-e069-e427-c4e394ab2825
X-Runtime: 0.000934
Date: Sun, 21 Dec 2025 05:45:02 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>
Open service 99.83.217.1:443 · api.leasingberegner.com
2025-12-19 07:38
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Content-Length: 103
Content-Type: text/html
Location: https://api.leasingberegner.com/admin
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=K9TJgBIatU9VIRLBQkoEkpCMow%2FXfyXF2K9NC5T%2B1M8%3D\u0026sid=c4c9725f-1ab0-44d8-820f-430df2718e11\u0026ts=1766129884"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=K9TJgBIatU9VIRLBQkoEkpCMow%2FXfyXF2K9NC5T%2B1M8%3D&sid=c4c9725f-1ab0-44d8-820f-430df2718e11&ts=1766129884"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Request-Id: 4437c812-814f-80fc-eb9c-7ce37fff63c9
X-Runtime: 0.001040
Date: Fri, 19 Dec 2025 07:38:04 GMT
Connection: close
<html><body>You are being <a href="https://api.leasingberegner.com/admin">redirected</a>.</body></html>