Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b6e67656b6e67656b6e67656b6e67656b6e67656b6e67656
Public Swagger UI/API detected at path: /swagger-ui.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b6e67656b6e67656b6e67656b6e67656b6e67656b6e67656
Public Swagger UI/API detected at path: /swagger-ui.html
Open service 3.33.161.45:443 · api.staging.employeedomain.com
2026-01-09 15:10
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Fri, 09 Jan 2026 15:10:20 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=CaUcrbhYwjYZUE9eTFNw5f8PgbfG%2F%2B%2BIPqXUsZFZCek%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767971420"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=CaUcrbhYwjYZUE9eTFNw5f8PgbfG%2F%2B%2BIPqXUsZFZCek%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767971420"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:13431
Content-Length: 104
Connection: close
{"timestamp":1767971420642,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:80 · api.staging.employeedomain.com
2026-01-09 07:54
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Fri, 09 Jan 2026 07:55:56 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=BW5JdeNpupm9Nn1wfK%2B89G%2B%2FrhCxHChxMNKaucpWCgs%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767945356"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=BW5JdeNpupm9Nn1wfK%2B89G%2B%2FrhCxHChxMNKaucpWCgs%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767945356"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:13431
Content-Length: 104
Connection: close
{"timestamp":1767945356043,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:443 · api.staging.employeedomain.com
2026-01-02 17:44
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Fri, 02 Jan 2026 17:44:14 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=39kVhRVo%2FkKi4%2BmAKZDaq42u3PQwKUD%2F37f7m6gfVKQ%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767375854"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=39kVhRVo%2FkKi4%2BmAKZDaq42u3PQwKUD%2F37f7m6gfVKQ%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767375854"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:14450
Content-Length: 104
Connection: close
{"timestamp":1767375854838,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:80 · api.staging.employeedomain.com
2026-01-02 13:20
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Fri, 02 Jan 2026 13:20:58 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=bVvh9qfAE61AsDdkZE8nvSayDOYGa%2B7gKQgubKjiW8g%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767360058"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=bVvh9qfAE61AsDdkZE8nvSayDOYGa%2B7gKQgubKjiW8g%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767360058"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:14450
Content-Length: 104
Connection: close
{"timestamp":1767360058883,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:443 · api.staging.employeedomain.com
2025-12-23 08:57
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Tue, 23 Dec 2025 08:57:07 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Ob3GwWsoDZZWnkf1UB5PH%2F0KCQ0RPlPron6Jogau%2Fx0%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766480227"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Ob3GwWsoDZZWnkf1UB5PH%2F0KCQ0RPlPron6Jogau%2Fx0%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766480227"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:30731
Content-Length: 104
Connection: close
{"timestamp":1766480227956,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:80 · api.staging.employeedomain.com
2025-12-22 12:01
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Mon, 22 Dec 2025 12:01:42 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=X4zMyVeufJQIerS1cqmqpHV5DFM4BvlayvPkhW5oftU%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766404902"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=X4zMyVeufJQIerS1cqmqpHV5DFM4BvlayvPkhW5oftU%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766404902"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:47894
Content-Length: 104
Connection: close
{"timestamp":1766404902827,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:443 · api.staging.employeedomain.com
2025-12-21 11:24
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Sun, 21 Dec 2025 11:24:38 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=F8rItOCt242ikbCouJTejf0c08vYc2%2FAvcSn3ShSEhM%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766316278"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=F8rItOCt242ikbCouJTejf0c08vYc2%2FAvcSn3ShSEhM%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766316278"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:28233
Content-Length: 104
Connection: close
{"timestamp":1766316278746,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:80 · api.staging.employeedomain.com
2025-12-20 11:48
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Sat, 20 Dec 2025 11:48:37 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Ns%2F4u%2Bmgb44RYFY%2FWNPBi5nc9ATdcVYEIyQA5zbAN%2Bg%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766231317"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Ns%2F4u%2Bmgb44RYFY%2FWNPBi5nc9ATdcVYEIyQA5zbAN%2Bg%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766231317"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:46081
Content-Length: 104
Connection: close
{"timestamp":1766231318000,"status":404,"error":"Not Found","message":"No message available","path":"/"}
Open service 3.33.161.45:443 · api.staging.employeedomain.com
2025-12-19 07:00
HTTP/1.1 404 Not Found
Content-Type: application/json;charset=UTF-8
Date: Fri, 19 Dec 2025 07:00:00 GMT
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=a4mIKGdu2XR3zs0X5JRP8CgPxqqWoi9gDddIHWeq3zQ%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766127600"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=a4mIKGdu2XR3zs0X5JRP8CgPxqqWoi9gDddIHWeq3zQ%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766127600"
Server: Heroku
Via: 1.1 heroku-router
X-Application-Context: api-gateway:staging:8250
Content-Length: 104
Connection: close
{"timestamp":1766127600471,"status":404,"error":"Not Found","message":"No message available","path":"/"}