Heroku
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3865d6d0fb1617d1dd9b223b37e4114a96cc77151
GraphQL introspection enabled at /graphql Types: 102 (by kind: ENUM: 9, INPUT_OBJECT: 23, OBJECT: 62, SCALAR: 8) Operations: - Query: Query | fields: currentAdmin, getActivePackages, getAdminAppointmentSummary, getAppointmentSummary, getAvailableTechnicians - Mutation: Mutation | fields: addLocationToBooking, addScheduleToBooking, addServicesInServiceStage, addServicesToBooking, adminBookingCancel Directives: deprecated, include, oneOf, skip (total: 4)
Open service 13.248.132.87:443 · api.pierslaine.com
2026-01-10 00:11
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=k%2F6dHlHb9EPDH%2Bkbuje9GLFXV59J06PpjXQZ8NarUi4%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768003872"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=k%2F6dHlHb9EPDH%2Bkbuje9GLFXV59J06PpjXQZ8NarUi4%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768003872"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 08042c89-2937-49c9-a7c9-ab3c157d02ef
X-Runtime: 0.065783
Date: Sat, 10 Jan 2026 00:11:13 GMT
Connection: close
Open service 13.248.132.87:443 · api.pierslaine.com
2026-01-02 20:36
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=OIK0JOVxCWM2B0L5fe7%2F1eOEvVviXoGo6H2NlqR2nN8%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767386170"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=OIK0JOVxCWM2B0L5fe7%2F1eOEvVviXoGo6H2NlqR2nN8%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767386170"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 65af9c42-3ccf-a5a8-a340-0e5eb76234c8
X-Runtime: 0.108071
Date: Fri, 02 Jan 2026 20:36:10 GMT
Connection: close
Open service 13.248.132.87:443 · api.pierslaine.com
2025-12-23 02:35
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=6ZuVH4eP%2B6MtlvYW1cYivlVaNM5GRH%2BGaqEkhhuZmwE%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766457315"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=6ZuVH4eP%2B6MtlvYW1cYivlVaNM5GRH%2BGaqEkhhuZmwE%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766457315"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 34977e47-cd62-6972-62b1-bbfd997474d3
X-Runtime: 0.090152
Date: Tue, 23 Dec 2025 02:35:15 GMT
Connection: close
Open service 13.248.132.87:443 · api.pierslaine.com
2025-12-21 08:18
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=BTn9SEcRixRRRAtx%2BMgG5pn%2FgRAhXCJA5YANajSCG2E%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766305086"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=BTn9SEcRixRRRAtx%2BMgG5pn%2FgRAhXCJA5YANajSCG2E%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766305086"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 4f221aec-bb39-2a92-93fd-d7bfbbc9d348
X-Runtime: 0.073640
Date: Sun, 21 Dec 2025 08:18:06 GMT
Connection: close
Open service 13.248.132.87:443 · api.pierslaine.com
2025-12-19 05:54
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=F4smcqPdy5rhUPaJjMgf2DjazhryAOXep36JWhQJp8k%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766123690"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=F4smcqPdy5rhUPaJjMgf2DjazhryAOXep36JWhQJp8k%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766123690"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 0123365d-04f0-f93f-c705-fa17536b4f16
X-Runtime: 0.060801
Date: Fri, 19 Dec 2025 05:54:50 GMT
Connection: close