Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131077a4898
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /cremation/cremation-minutes-by-proposal GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /contract/turn-contract-digital POST /cremation/create-ashes-protocol POST /cremation/create-cremation-declaration POST /cremation/create-minutes-document POST /cremation/create-partial-minutes-document POST /cremation/download-ashes-protocol-pdf POST /cremation/download-cremation-declaration-pdf POST /cremation/download-minutes-document-pdf POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /client/update-if-editable PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131a514166d
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /contract/turn-contract-digital POST /cremation/create-ashes-protocol POST /cremation/create-cremation-declaration POST /cremation/create-minutes-document POST /cremation/create-partial-minutes-document POST /cremation/download-ashes-protocol-pdf POST /cremation/download-cremation-declaration-pdf POST /cremation/download-minutes-document-pdf POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /client/update-if-editable PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131725a334d
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/create-ashes-protocol POST /cremation/create-cremation-declaration POST /cremation/create-minutes-document POST /cremation/create-partial-minutes-document POST /cremation/download-ashes-protocol-pdf POST /cremation/download-cremation-declaration-pdf POST /cremation/download-minutes-document-pdf POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /client/update-if-editable PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b486269871315f750581
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/download-ashes-protocol POST /cremation/download-declaration POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131278ac54d
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /client/get-by-proposal GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/download-ashes-protocol POST /cremation/download-declaration POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131077a4898
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /cremation/cremation-minutes-by-proposal GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /contract/turn-contract-digital POST /cremation/create-ashes-protocol POST /cremation/create-cremation-declaration POST /cremation/create-minutes-document POST /cremation/create-partial-minutes-document POST /cremation/download-ashes-protocol-pdf POST /cremation/download-cremation-declaration-pdf POST /cremation/download-minutes-document-pdf POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /client/update-if-editable PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131725a334d
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/create-ashes-protocol POST /cremation/create-cremation-declaration POST /cremation/create-minutes-document POST /cremation/create-partial-minutes-document POST /cremation/download-ashes-protocol-pdf POST /cremation/download-cremation-declaration-pdf POST /cremation/download-minutes-document-pdf POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /client/update-if-editable PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b486269871315f750581
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /people-proposal/get-by-proposal GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/get-proposals-search-page GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/download-ashes-protocol POST /cremation/download-declaration POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4bb5752f79013829c80d34b48626987131278ac54d
Public Swagger UI/API detected at path: /v3/api-docs - sample paths: DELETE /additional-product-details/delete DELETE /beneficiary/delete DELETE /business-client/delete DELETE /client/delete DELETE /enterprise/remove-user DELETE /integral-part/delete DELETE /interest-rate/delete DELETE /planProduct/delete DELETE /plot-product-details/delete DELETE /proposal-addit-product/delete DELETE /user/delete GET /additional-product-details/get-additional-product-details GET /additional-product-details/get-all GET /beneficiary/get-all GET /beneficiary/get-by GET /business-client/get-all GET /business-client/get-business-client GET /client/get-all GET /client/get-by GET /client/get-by-proposal GET /co-owner GET /collection GET /contract GET /contract/pending-contracts GET /cremation GET /cremation-product-details GET /disapproval-message GET /document GET /enterprise GET /funeral GET /funeral-room GET /integral-part/get-all GET /integral-part/get-by GET /interest-rate/get-all GET /interest-rate/get-interest-rate GET /lot GET /niche GET /planProduct/get-all GET /planProduct/get-planProduct-by GET /plot-product-details/get-all GET /plot-product-details/get-plot-product-details GET /product GET /proposal GET /proposal-addit-product GET /proposal-tmp-status GET /proposal/proof-approval GET /role/get-all GET /user/get-all GET /user/get-logged GET /user/get-user POST /additional-product-details/create POST /auth/login POST /auth/reset-password POST /auth/update-password POST /auth/validate-token POST /beneficiary/create POST /business-client/create POST /client/create POST /cremation/download-ashes-protocol POST /cremation/download-declaration POST /document/docsales POST /document/ftp POST /enterprise/add-user POST /esign POST /esign/resend-email POST /integral-part/create POST /interest-rate/create POST /interest-rate/pmt-calc POST /interest-rate/price-table-calc POST /orchestrator POST /orchestrator/generate-and-send-document POST /orchestrator/orchestrate-contract-at-status-change POST /orchestrator/send-json-to-team POST /pdf/antecipate-physical-contract POST /pdf/generate-proposal-and-contract POST /pdf/regenerate-or-antecipate-contract POST /pdf/regenerate-proposal POST /planProduct/create POST /plot-product-details/create POST /proposal-addit-product/create POST /tmp-proposal/send POST /user/create POST /user/new-role PUT /additional-product-details/update PUT /beneficiary/deactivate PUT /beneficiary/update PUT /business-client/update PUT /client/update PUT /co-owner/deactivate PUT /esign/cancel PUT /integral-part/deactivate PUT /integral-part/update PUT /interest-rate/update PUT /orchestrator/update-contract PUT /planProduct/update PUT /plot-product-details/update PUT /proposal-addit-product/deactivate PUT /proposal-addit-product/update PUT /proposal-tmp-status/use-proposal PUT /proposal/update-status PUT /user/deactivate PUT /user/update
Open service 75.2.60.68:443 · api.perpetussystem.com.br
2026-01-10 01:05
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Sat, 10 Jan 2026 01:05:15 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FmyneEUCwzFNXUOghyxoYxkWryU9SZlQp9p1WpWldO8%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1768007115"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FmyneEUCwzFNXUOghyxoYxkWryU9SZlQp9p1WpWldO8%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1768007115"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2026-01-09 16:56
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Fri, 09 Jan 2026 16:57:21 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=ap25favYyUhCl0EQ%2BxEzn4RhnBrHK%2FW8SPKcFVM1v6w%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1767977841"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=ap25favYyUhCl0EQ%2BxEzn4RhnBrHK%2FW8SPKcFVM1v6w%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1767977841"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2026-01-02 23:44
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Fri, 02 Jan 2026 23:44:20 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2Bx%2BqwlARbvlRF3dlQ2pbyC8x%2FgGhu57hMlN%2FO9VZ0Bc%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1767397460"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2Bx%2BqwlARbvlRF3dlQ2pbyC8x%2FgGhu57hMlN%2FO9VZ0Bc%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1767397460"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 75.2.60.68:443 · api.perpetussystem.com.br
2026-01-02 18:39
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Fri, 02 Jan 2026 18:39:25 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=issWtadpDOlDwYV%2FWnNvxut0GKmhfr0z1DjRFmKYWH0%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1767379165"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=issWtadpDOlDwYV%2FWnNvxut0GKmhfr0z1DjRFmKYWH0%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1767379165"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2025-12-30 07:08
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Tue, 30 Dec 2025 07:08:09 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=6lfAe48KU1UjXs8dPSFhDLM4k2NVRDKtw%2B3YPANTg9c%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1767078489"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=6lfAe48KU1UjXs8dPSFhDLM4k2NVRDKtw%2B3YPANTg9c%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1767078489"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2025-12-22 22:37
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Mon, 22 Dec 2025 22:37:41 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=mkdZMvmR6oEhQqOvnnziFtI%2FRwGYqlWO3jMX3WYz%2FDQ%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766443061"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=mkdZMvmR6oEhQqOvnnziFtI%2FRwGYqlWO3jMX3WYz%2FDQ%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766443061"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 75.2.60.68:443 · api.perpetussystem.com.br
2025-12-22 20:32
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Mon, 22 Dec 2025 20:32:59 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Cdz7GwuX%2FTRD%2FoehRJee3seMjtAHp2Ie0GeghGJ721o%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766435579"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Cdz7GwuX%2FTRD%2FoehRJee3seMjtAHp2Ie0GeghGJ721o%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766435579"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2025-12-21 03:08
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Sun, 21 Dec 2025 03:08:21 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=tszEJDiCFEjUSigHv%2BQ8aj3BTcNEUg88ub%2BYlFhk7a8%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766286501"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=tszEJDiCFEjUSigHv%2BQ8aj3BTcNEUg88ub%2BYlFhk7a8%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766286501"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
Open service 35.71.179.82:80 · api.perpetussystem.com.br
2025-12-19 03:14
HTTP/1.1 403 Forbidden
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 0
Date: Fri, 19 Dec 2025 03:14:14 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Z4LsVLJrUN1YWwjub5wAut2iHVzopPIlLp2JRbjGoLk%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766114054"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Z4LsVLJrUN1YWwjub5wAut2iHVzopPIlLp2JRbjGoLk%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766114054"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close