Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Open service 13.248.132.87:443 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:35:06 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181706"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181706"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 13.248.132.87:80 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:36:07 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181767"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181767"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:35:06 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181706"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181706"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 99.83.151.71:80 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:36:07 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181767"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181767"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 75.2.97.79:80 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:36:07 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181767"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181767"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 99.83.151.71:443 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:35:06 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181706"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181706"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 75.2.97.79:443 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:35:06 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181706"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=iWe8dBEYpsxXEeD6v7iuE32qqus7u7ACBCLHeRFn%2FT4%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181706"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:80 · api.nardoinc.com
2026-01-12 01:35
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 12 Jan 2026 01:36:07 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768181767"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=OnXiwO%2FRknk1KQDMgHozdbde%2BQLvM%2FDLLxjyhSj1LPA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768181767"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2026-01-09 18:02
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Fri, 09 Jan 2026 18:02:30 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=UrN7fxHQcMMz7B7eYqaMnAm7dMpmW2MH%2F0%2F23nFak48%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767981750"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=UrN7fxHQcMMz7B7eYqaMnAm7dMpmW2MH%2F0%2F23nFak48%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767981750"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 13.248.132.87:80 · api.nardoinc.com
2026-01-09 09:27
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Fri, 09 Jan 2026 09:28:33 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=C1UVioq86UmNq3dF8dCZycfpJGOL4%2BcuXSrObA8wVzY%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767950913"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=C1UVioq86UmNq3dF8dCZycfpJGOL4%2BcuXSrObA8wVzY%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767950913"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2026-01-02 22:34
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 22:34:48 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=1K3%2FBl7ipfhPvVO4eqatOat6%2FWxBCUkQLFZwr1HsWjA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767393288"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=1K3%2FBl7ipfhPvVO4eqatOat6%2FWxBCUkQLFZwr1HsWjA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767393288"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 13.248.132.87:80 · api.nardoinc.com
2026-01-01 19:28
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Thu, 01 Jan 2026 19:28:44 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=L%2FPO%2Bgsc3oMgKqoUitm5qHFxSrHkaNSCnRRQOodGT%2BM%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767295724"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=L%2FPO%2Bgsc3oMgKqoUitm5qHFxSrHkaNSCnRRQOodGT%2BM%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767295724"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2025-12-22 22:54
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 22 Dec 2025 22:54:35 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2BvTMS1357QPGng7Kx%2Fy0nFbutYPui4jxLHeSG%2By6NjM%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766444075"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2BvTMS1357QPGng7Kx%2Fy0nFbutYPui4jxLHeSG%2By6NjM%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766444075"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 13.248.132.87:80 · api.nardoinc.com
2025-12-22 17:48
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Mon, 22 Dec 2025 17:48:48 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=jmOiqOMbUGBagz3IGVBXWP9%2FkqhYK3IrSJ%2F6Wo4CDHM%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766425728"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=jmOiqOMbUGBagz3IGVBXWP9%2FkqhYK3IrSJ%2F6Wo4CDHM%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766425728"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2025-12-21 02:47
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Sun, 21 Dec 2025 02:47:17 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FtDSNPV36sodCcebyVS3KuqCKk2hMmp6Cz5%2B2esXwlw%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766285237"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FtDSNPV36sodCcebyVS3KuqCKk2hMmp6Cz5%2B2esXwlw%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766285237"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 13.248.132.87:80 · api.nardoinc.com
2025-12-20 20:51
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Sat, 20 Dec 2025 20:51:36 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=yiSdHjWpRstMxZCnEoB7W%2BfrbJp9OHOZsQkwczGBVWA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766263896"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=yiSdHjWpRstMxZCnEoB7W%2BfrbJp9OHOZsQkwczGBVWA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766263896"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}
Open service 35.71.145.101:443 · api.nardoinc.com
2025-12-19 03:40
HTTP/1.1 404 Not Found
Access-Control-Allow-Origin: *
Content-Length: 43
Content-Type: application/json; charset=utf-8
Date: Fri, 19 Dec 2025 03:40:11 GMT
Etag: W/"2b-AnP5uttH1X0hwsgVT5SVOgyjreY"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=r3ascgj72VUpkpXPxCh4xb8Mvb%2Fj0PM1TYB41lOOGFo%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766115611"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=r3ascgj72VUpkpXPxCh4xb8Mvb%2Fj0PM1TYB41lOOGFo%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766115611"
Server: Heroku
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"message":"Cannot GET /","statusCode":404}