cloudflare
tcp/443 tcp/80 tcp/8443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37b21be481c8861ec27d45f81a944cb3c7ebf9673
GraphQL introspection enabled at /graphql Types: 114 (by kind: ENUM: 14, INPUT_OBJECT: 53, OBJECT: 40, SCALAR: 7) Operations: - Query: Query | fields: address, addresses, allOrders, buyer, buyers - Mutation: Mutation | fields: addCartItem, addStoreCategory, addStoreReturnOption, addStoreShippingMethod, addToWishlist Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37b21be481c8861ec27d45f81a944cb3cc32b95cc
GraphQL introspection enabled at /graphql Types: 114 (by kind: ENUM: 14, INPUT_OBJECT: 53, OBJECT: 40, SCALAR: 7) Operations: - Query: Query | fields: address, addresses, allOrders, buyer, buyers - Mutation: Mutation | fields: addCartItem, addStoreCategory, addStoreReturnOption, addStoreShippingMethod, addToWishlist Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
Open service 188.114.96.12:443 · api.store.et
2026-01-08 20:28
HTTP/1.1 200 OK
Date: Thu, 08 Jan 2026 20:28:12 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-3iBAw9VSG6R7yVkTQNPlHLSwlys"
Set-Cookie: guestId=a3dbf76c-c9c0-44c0-9855-9b3c6a8df094; Max-Age=2592000; Path=/; Expires=Sat, 07 Feb 2026 20:28:12 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=TtXVLKSNQpS1QYPX%2BwrJOV0QNKVo2%2FnHJx9aHqjcroeS975Y5mHNvPLIsKE9ZzKakjgVYERjrsZfwLklL5J3mfx2g3103yVl57cVdA%3D%3D"}]}
Server: cloudflare
CF-RAY: 9bae70a2bff6dcbc-FRA
{"success":true,"statusCode":200,"timestamp":"2026-01-08T20:28:12.643Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 104.21.13.108:443 · api.store.et
2026-01-04 11:38
HTTP/1.1 200 OK
Date: Sun, 04 Jan 2026 11:38:32 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-Yl7MZSOwgbokMPZES74sniOCy4Y"
Set-Cookie: guestId=1c48e8ce-7eec-42ba-9c4f-14bfba9f2677; Max-Age=2592000; Path=/; Expires=Tue, 03 Feb 2026 11:38:32 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=255
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=%2BP3Xatk2M%2FAZnNQqz%2BpEO6CPbBOMOBRBWpQR8uCfbLtX5CQDrMRnzXR%2BzDn62W5HfAsH%2FzpJ1gcp4MLNGF1s1g%2FHYFZecXpLUI8bRA%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b8a733e9a443de5-BOM
{"success":true,"statusCode":200,"timestamp":"2026-01-04T11:38:32.190Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 104.21.13.108:8443 · api.store.et
2026-01-04 11:38
HTTP/1.1 521 <none> Date: Sun, 04 Jan 2026 11:38:31 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=354,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9b8a733a9cb8fd3b-SIN alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 172.67.199.215:8443 · api.store.et
2026-01-04 11:38
HTTP/1.1 521 <none> Date: Sun, 04 Jan 2026 11:38:31 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=118,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9b8a733a0896b0a3-YYZ alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 2a06:98c1:3121::3:80 · api.store.et
2026-01-04 11:38
HTTP/1.1 301 Moved Permanently
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Length: 0
Connection: close
Location: https://api.store.et/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=iCmMhsxeWx9xLsoAsZ9K6myiH9zDfxF%2BoIZU5FrycIlEtdwA%2F19erZ96QtJZd%2F8WSuRsupfHSGacW8DEHIrW%2F4woqBoJwT5U1%2FGg7IE7tsYttDUjWknPrg%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=14,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9b8a7338fdba4234-EWR
alt-svc: h3=":443"; ma=86400
Open service 172.67.199.215:443 · api.store.et
2026-01-04 11:38
HTTP/1.1 200 OK
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-nBK16+GN5i0SD0IQm/eua8M+mIA"
Set-Cookie: guestId=1021660b-4396-49d2-a8e4-b23a301510fd; Max-Age=2592000; Path=/; Expires=Tue, 03 Feb 2026 11:38:31 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=aO%2FFTZW7tmfX8ziPa2ynkXpbbDUz2QPqvAX2nllIrcLEb%2Btk5IJj9F4dk3f3XcOu4ohT8lD1zwK%2BsUSxfj8ioSAd9m6cnzBH9ReM3Q%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b8a733908441a6b-FRA
{"success":true,"statusCode":200,"timestamp":"2026-01-04T11:38:31.257Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 2a06:98c1:3120::3:443 · api.store.et
2026-01-04 11:38
HTTP/1.1 200 OK
Date: Sun, 04 Jan 2026 11:38:32 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-ouu7v9HujJmZhY12mgNXpbah66E"
Set-Cookie: guestId=c5219bc3-f397-46fa-b612-e95916aec826; Max-Age=2592000; Path=/; Expires=Tue, 03 Feb 2026 11:38:32 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=507
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=TxQvS92Hpd4zUeWWa0glspgIqXcAt5kLtaOtyNptBWhGjc06IE%2BFadtWEyCJLb%2FEXzT8XwaLxOUn490ZCfyGwLkPG45uazGiNGfkMAif%2FJnxAN7PDDtAFA%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b8a733c0c2ecf05-SJC
{"success":true,"statusCode":200,"timestamp":"2026-01-04T11:38:32.118Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 2a06:98c1:3120::3:80 · api.store.et
2026-01-04 11:38
HTTP/1.1 301 Moved Permanently
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Length: 0
Connection: close
Location: https://api.store.et/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=GFBSu5BDn8lEcJkgVu9qLVH%2Fs%2BZLlYTIC9BQ8VWXOiNWBErzA53CA1EZlfKZpGWrRyqzFnqjCPp0uETODxYnMkuU1AHCxTscuZ%2BOxYSoGOBckf%2FFv3cmdw%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=9,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9b8a73387fbd4d21-SJC
alt-svc: h3=":443"; ma=86400
Open service 172.67.199.215:80 · api.store.et
2026-01-04 11:38
HTTP/1.1 301 Moved Permanently
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Length: 0
Connection: close
Location: https://api.store.et/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Ug3h2FMrN9mdbZox%2FpDtdF%2FGlevZlGd1JHb2OwPJpD1GFrNi6oUSS%2Bfs86pct9tIldtFCb%2FvblXbzj%2FhgrlsJ0DfQaTvVXKR7whWyA%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9b8a733849735d57-FRA
alt-svc: h3=":443"; ma=86400
Open service 104.21.13.108:80 · api.store.et
2026-01-04 11:38
HTTP/1.1 301 Moved Permanently
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Length: 0
Connection: close
Location: https://api.store.et/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Z3jbFSvcseefiJpoAy5vcezuzRT4TuEAFh%2BN%2B2HY2izQy%2F%2BHOyRFJ1zSMKougN5pXPp2HP0elyH6ron3mwwaoOEWboOjpfHEZcaGAQ%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=10,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9b8a73385c5014a8-EWR
alt-svc: h3=":443"; ma=86400
Open service 2a06:98c1:3121::3:443 · api.store.et
2026-01-04 11:38
HTTP/1.1 200 OK
Date: Sun, 04 Jan 2026 11:38:31 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-Llduuzafvre+2tmjsgq+WG6BPso"
Set-Cookie: guestId=e2242464-89d5-4cf7-b702-75a24ec7a0aa; Max-Age=2592000; Path=/; Expires=Tue, 03 Feb 2026 11:38:31 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=EISTUZV9OvLQNzHrDU%2BJmxAFKXzuxjq0uxZipxx6GXGDWd6kfYNoxo2sxiDIWkw8q%2FfQ6WPqoCJsmX5yNpmeKWxe6H8rgHifvL5mLkjzqRIP%2BCPu2P%2BAQA%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b8a7338aa9edc92-FRA
{"success":true,"statusCode":200,"timestamp":"2026-01-04T11:38:31.200Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 2a06:98c1:3120::3:8443 · api.store.et
2026-01-04 11:38
HTTP/1.1 521 <none> Date: Sun, 04 Jan 2026 11:38:31 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9b8a73386907adda-LHR alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 188.114.96.12:443 · api.store.et
2026-01-02 12:23
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 12:23:50 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-naNgESbdmEllAHAmkIBag3BDra8"
Set-Cookie: guestId=d703ae99-06d8-4254-8703-f4a4162e4508; Max-Age=2592000; Path=/; Expires=Sun, 01 Feb 2026 12:23:50 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=k9%2FTQbS2QoK6hFF%2FSspr4ejHI2TRhnBWrD2%2BrUfgOhfZ5KvbHSLlRwxmNXu6XsMQ9e%2FJcgqf87RL3XrXziS7k1Ad2LQJr98%2FYvpypw%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b7a3ad9ca0571c4-FRA
{"success":true,"statusCode":200,"timestamp":"2026-01-02T12:23:50.094Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 188.114.96.12:443 · api.store.et
2025-12-22 18:56
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 18:56:14 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-8Yk7XtRJgf0NpiO+96Kmgy0FyCo"
Set-Cookie: guestId=31401137-9e45-4140-b6a8-c8e95ba992c5; Max-Age=2592000; Path=/; Expires=Wed, 21 Jan 2026 18:56:14 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=E6KLO2ZR8oFxerdCRS7bBFUa%2Bbg%2FLvA2ExChtyETCLosBQ8elrPOY%2B%2Fkh3z4ZcsvACkVhP%2FoRfhFmq84pNYSPb0HSzBsdT0aK6%2BGCQ%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b21d68c4c67c5d6-AMS
{"success":true,"statusCode":200,"timestamp":"2025-12-22T18:56:14.824Z","path":"/","method":"GET","data":{"status":"ok"}}
Open service 188.114.96.12:443 · api.store.et
2025-12-20 20:25
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 20:25:37 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 121
Connection: close
access-control-allow-credentials: true
alt-svc: h3=":443"; ma=86400
etag: W/"79-+6F2DKDt5ED9FPhahVNHBCXyaaU"
Set-Cookie: guestId=f3462837-e158-4cf4-a258-400722607c6a; Max-Age=2592000; Path=/; Expires=Mon, 19 Jan 2026 20:25:37 GMT; HttpOnly; Secure; SameSite=None
vary: Accept-Encoding
vary: Origin
x-powered-by: Express
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=lBio3rfPchyVFXobzft4hI5KpgcQGzrfvaJwiZuwjjlsCZbl%2FqUW4m9ScVQL7DRT1ODcQiFBxlwSqclsrwXV3V6Cr0HokFMEMA%2FU5g%3D%3D"}]}
Server: cloudflare
CF-RAY: 9b11debb2d8d86bf-LHR
{"success":true,"statusCode":200,"timestamp":"2025-12-20T20:25:37.868Z","path":"/","method":"GET","data":{"status":"ok"}}