Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Open service 15.197.149.68:443 · www.api.mapistry.com
2026-01-10 01:27
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 10 Jan 2026 01:27:35 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2B%2B7eD%2FN%2BG1rNl4Uxb7jI2eSGAl95iqz7XiZpVqdPh28%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768008455"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2B%2B7eD%2FN%2BG1rNl4Uxb7jI2eSGAl95iqz7XiZpVqdPh28%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768008455"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 13.248.213.92:443 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 10 Jan 2026 00:49:29 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=XLN13v6iZpaKEbhWem8zMd9%2FChiKI0bSYbeINd1lYvQ%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006169"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=XLN13v6iZpaKEbhWem8zMd9%2FChiKI0bSYbeINd1lYvQ%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006169"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:80 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 10 Jan 2026 00:50:29 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006229"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006229"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 15.197.149.68:443 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 10 Jan 2026 00:49:28 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=zz0VpZdbTBGBJ5KnSosYaSfGb3bp0zZGwDUHDQDnb%2FA%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006168"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=zz0VpZdbTBGBJ5KnSosYaSfGb3bp0zZGwDUHDQDnb%2FA%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006168"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:443 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 10 Jan 2026 00:49:29 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=XLN13v6iZpaKEbhWem8zMd9%2FChiKI0bSYbeINd1lYvQ%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006169"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=XLN13v6iZpaKEbhWem8zMd9%2FChiKI0bSYbeINd1lYvQ%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006169"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 15.197.149.68:80 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 10 Jan 2026 00:50:29 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006229"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006229"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 3.33.241.96:80 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 10 Jan 2026 00:50:29 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006229"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006229"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 3.33.241.96:443 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 10 Jan 2026 00:49:28 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=zz0VpZdbTBGBJ5KnSosYaSfGb3bp0zZGwDUHDQDnb%2FA%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006168"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=zz0VpZdbTBGBJ5KnSosYaSfGb3bp0zZGwDUHDQDnb%2FA%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006168"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 13.248.213.92:80 · api.mapistry.com
2026-01-10 00:49
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 10 Jan 2026 00:50:29 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1768006229"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=S1m0UIwIBD82SGJrFMVLkGGJsa8ZPXYdEaXHHv3Uxlc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1768006229"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 76.223.57.73:443 · api.mapistry.com
2026-01-09 07:49
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 09 Jan 2026 07:49:11 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=2xPG5V2LqPOj6zydfJLdPHZyCP3h5ZtHUNa85gfH68s%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767944951"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=2xPG5V2LqPOj6zydfJLdPHZyCP3h5ZtHUNa85gfH68s%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767944951"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 3.33.241.96:443 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:34 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401194"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401194"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:80 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:37 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FLsV9TlDFtjCxLKuwnGsRmc95g%2FimCgl9z2jYMiyh%2Fc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401197"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FLsV9TlDFtjCxLKuwnGsRmc95g%2FimCgl9z2jYMiyh%2Fc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401197"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 15.197.149.68:80 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:36 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401196"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401196"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 3.33.241.96:80 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:36 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401196"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401196"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 76.223.57.73:443 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:34 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401194"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401194"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 13.248.213.92:80 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:36 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401196"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=eGVHORC%2BExLcN6QAvtmdeFkgwgbWyZpLbTmGBJW3SVE%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401196"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 15.197.149.68:443 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:34 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401194"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401194"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 13.248.213.92:443 · www.api.mapistry.com
2026-01-03 00:46
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 03 Jan 2026 00:46:34 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767401194"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=dXOc4ySCm5ouuxtYlj%2Bx0zdHizM9dmsR1aHksf61Gtw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767401194"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:443 · api.mapistry.com
2026-01-02 13:31
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 13:31:38 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=QBDa2oTAmpl46z9fqUpdBgQIhFLv7RgrutkOKQUbqKE%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767360698"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=QBDa2oTAmpl46z9fqUpdBgQIhFLv7RgrutkOKQUbqKE%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767360698"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 15.197.149.68:443 · www.api.mapistry.com
2026-01-02 10:27
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 10:27:18 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=F7cBZiIvQo%2B%2F8y92%2Bew2BWy2jjdnHvwYVNO9i%2BgRhBo%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767349638"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=F7cBZiIvQo%2B%2F8y92%2Bew2BWy2jjdnHvwYVNO9i%2BgRhBo%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767349638"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:80 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:16 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312496"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312496"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 15.197.149.68:443 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:13 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312493"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312493"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 13.248.213.92:80 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:16 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312496"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312496"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 3.33.241.96:80 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:16 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312496"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FihFK48WAjnKJu2WTdBNZxMBUKca4%2BhwJAOhQI4RYj4%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312496"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 13.248.213.92:443 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:13 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312493"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312493"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:443 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:13 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312493"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312493"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 3.33.241.96:443 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:13 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312493"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=m0w7xwxmyxFgNU9vYdLK7sapG5nxcNlhrqnfOCYTR9A%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312493"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 15.197.149.68:80 · api.mapistry.com
2026-01-02 00:08
HTTP/1.1 403 Forbidden
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 76
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 00:08:15 GMT
Etag: W/"4c-lGmHMy5iLkREBmuiheDay8llKt0"
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=SZaStnBP%2BlntRenvAcBLIQpYuWGePnIiQqjGMt%2FEvbo%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767312495"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=SZaStnBP%2BlntRenvAcBLIQpYuWGePnIiQqjGMt%2FEvbo%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767312495"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
{"message":"TLS/SSL required. Make sure you're using https instead of http"}
Open service 76.223.57.73:443 · api.mapistry.com
2025-12-22 21:03
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Mon, 22 Dec 2025 21:03:33 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=2AabfWneLhGbYFcUUNX%2BrIXLW%2F4XIIughI9%2BXF2bcew%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766437413"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=2AabfWneLhGbYFcUUNX%2BrIXLW%2F4XIIughI9%2BXF2bcew%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766437413"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 15.197.149.68:443 · www.api.mapistry.com
2025-12-22 09:24
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Mon, 22 Dec 2025 09:24:06 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=kwtgheypOpkDD7IKf%2BkTKwYkGBvu%2FYfxFaKlt6Pz41A%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766395446"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=kwtgheypOpkDD7IKf%2BkTKwYkGBvu%2FYfxFaKlt6Pz41A%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766395446"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:443 · api.mapistry.com
2025-12-20 23:21
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 20 Dec 2025 23:21:28 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=WvvOw7SSyLXZT%2F6N9rV9zbLTqJM9Nx6Lt0i4FuZgysc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766272888"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=WvvOw7SSyLXZT%2F6N9rV9zbLTqJM9Nx6Lt0i4FuZgysc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766272888"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 15.197.149.68:443 · www.api.mapistry.com
2025-12-20 12:55
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Sat, 20 Dec 2025 12:55:31 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=6pIsp68%2Bi2KQnUFadwv4LBvaAeF2wjhJFixz0wgSwEs%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766235331"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=6pIsp68%2Bi2KQnUFadwv4LBvaAeF2wjhJFixz0wgSwEs%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766235331"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com
Open service 76.223.57.73:443 · api.mapistry.com
2025-12-19 01:15
HTTP/1.1 302 Found
Access-Control-Expose-Headers: IMPERSONATING_USER_EMAIL
Cache-Control: no-store, no-cache, must-revalidate, proxy-revalidate
Content-Length: 46
Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
Content-Type: text/plain; charset=utf-8
Date: Fri, 19 Dec 2025 01:15:28 GMT
Expires: 0
Location: https://app.mapistry.com
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=KQhZpslNpZDCHllpIduhb0gqcxh4HyMSFtDQ%2BFv%2BQZ8%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766106928"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=KQhZpslNpZDCHllpIduhb0gqcxh4HyMSFtDQ%2BFv%2BQZ8%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766106928"
Server: Heroku
Strict-Transport-Security: max-age=10886400; includeSubDomains; preload
Surrogate-Control: no-store
Vary: Accept
Via: 1.1 heroku-router
X-Content-Security-Policy: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Content-Type-Options: nosniff
X-Dns-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: DENY
X-Webkit-Csp: script-src googleapis.com ajax.googleapis.com netdna.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com 'self' google-analytics.com www.google-analytics.com dev.virtualearth.net cdn.mxpnl.com js.maxmind.com *.wistia.com; img-src s3.amazonaws.com 'self' google-analytics.com *tiles.virtualearth.net data: *.wistia.com *.wistia.net; font-src themes.googleusercontent.com netdna.bootstrapcdn.com fonts.gstatic.com fonts.googleapis.com; connect-src 'self' geoip-ipv4.maxmind.com
X-Xss-Protection: 1; mode=block
Connection: close
Found. Redirecting to https://app.mapistry.com