Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Open service 75.2.97.79:443 · api.rockpartyapp.com
2026-01-09 09:48
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Fri, 09 Jan 2026 09:48:13 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=jUt5gcjlxJbsgSa7gpJ%2Bk7fAMMPwz8vOjWKlPlxsuvg%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767952093"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=jUt5gcjlxJbsgSa7gpJ%2Bk7fAMMPwz8vOjWKlPlxsuvg%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767952093"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 13.248.132.87:80 · api.rockpartyapp.com
2026-01-09 08:50
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Fri, 09 Jan 2026 08:51:29 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=LDNT7TKxo8a2ZC7QHJ0r1VY5HJ3GChWHgAuqBaknmGA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767948689"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=LDNT7TKxo8a2ZC7QHJ0r1VY5HJ3GChWHgAuqBaknmGA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767948689"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 75.2.97.79:443 · api.rockpartyapp.com
2026-01-02 10:58
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 10:58:19 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=HjI41eWDt0IVo14mCAi6YYqJp2nPtgc5iVOjA66Z8So%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767351499"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=HjI41eWDt0IVo14mCAi6YYqJp2nPtgc5iVOjA66Z8So%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767351499"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 13.248.132.87:80 · api.rockpartyapp.com
2026-01-02 08:34
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Fri, 02 Jan 2026 08:34:58 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=VN4M3ZZSaTxX4qJdK0iHTyKlJsiXGOrgIH8odz1IqeQ%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767342898"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=VN4M3ZZSaTxX4qJdK0iHTyKlJsiXGOrgIH8odz1IqeQ%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767342898"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 13.248.132.87:80 · api.rockpartyapp.com
2025-12-22 19:08
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Mon, 22 Dec 2025 19:08:22 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=g4QR6aZ2nHa6aPNnd4urcRTa1o4bqwLeXXmFU23HJGs%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766430502"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=g4QR6aZ2nHa6aPNnd4urcRTa1o4bqwLeXXmFU23HJGs%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766430502"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 75.2.97.79:443 · api.rockpartyapp.com
2025-12-22 15:35
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Mon, 22 Dec 2025 15:35:27 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=9KBJPoTAK9neeWX50PZtARmaZU26C0CHgvhR49FsHHY%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766417727"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=9KBJPoTAK9neeWX50PZtARmaZU26C0CHgvhR49FsHHY%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766417727"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 13.248.132.87:80 · api.rockpartyapp.com
2025-12-20 19:30
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Sat, 20 Dec 2025 19:30:59 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=CZjqEMAP962%2Fi1y7faQvSUMfjduWddgHsiYMcOWLpoI%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766259059"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=CZjqEMAP962%2Fi1y7faQvSUMfjduWddgHsiYMcOWLpoI%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766259059"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 75.2.97.79:443 · api.rockpartyapp.com
2025-12-20 16:28
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Sat, 20 Dec 2025 16:28:15 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=7YSJJwzf4r9e1A%2FzSBtPetWnsOQWWKWZqEpG3SRc%2Bzk%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766248095"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=7YSJJwzf4r9e1A%2FzSBtPetWnsOQWWKWZqEpG3SRc%2Bzk%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766248095"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}
Open service 13.248.132.87:80 · api.rockpartyapp.com
2025-12-19 01:56
HTTP/1.1 200 OK
Access-Control-Allow-Origin: *
Content-Length: 79
Content-Type: application/json; charset=utf-8
Date: Fri, 19 Dec 2025 01:56:47 GMT
Etag: W/"4f-VE1UPOYAnhAiSw+Dc0/X5tC7bqE"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=HjjKfJnqL5df1XK%2BxtfhzJeNFagCvZ%2Fh3blFnNaRD50%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766109407"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=HjjKfJnqL5df1XK%2BxtfhzJeNFagCvZ%2Fh3blFnNaRD50%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766109407"
Server: Heroku
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Powered-By: Express
Connection: close
{"serviceName":"game-api","description":"contain user, game, and file modules"}