Heroku
tcp/443 tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3d9c8e569ed0ef14b9851432646cc0eab4f0012c3
GraphQL introspection enabled at /graphql Types: 197 (by kind: ENUM: 7, INPUT_OBJECT: 5, OBJECT: 171, SCALAR: 14) Operations: - Query: Query | fields: arcadeGame, arcadeGames, associations, availablePlayersPrivateCoachingFreeTrial, availablePrivateCoachingFreeTrial - Mutation: Mutation | fields: applyDiscountCode, bulkInvitePlayers, cancelEvent, createBreakoutRooms, createCheckIn Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3d9c8e569ed0ef14b9851432646cc0eab4f0012c3
GraphQL introspection enabled at /graphql Types: 197 (by kind: ENUM: 7, INPUT_OBJECT: 5, OBJECT: 171, SCALAR: 14) Operations: - Query: Query | fields: arcadeGame, arcadeGames, associations, availablePlayersPrivateCoachingFreeTrial, availablePrivateCoachingFreeTrial - Mutation: Mutation | fields: applyDiscountCode, bulkInvitePlayers, cancelEvent, createBreakoutRooms, createCheckIn Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
Open service 13.248.213.92:80 · api.vantademo.com
2026-01-09 14:08
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=uXbFDAeQLlPOzXrY2Q5vGbF3J3iduHYPV2rDVsUcpZs%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767967773"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=uXbFDAeQLlPOzXrY2Q5vGbF3J3iduHYPV2rDVsUcpZs%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767967773"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: e79a5f99-2658-f339-dea6-b9ffaaeaa89c
X-Runtime: 0.003204
Date: Fri, 09 Jan 2026 14:09:33 GMT
Connection: close
Open service 3.33.241.96:443 · api.vantademo.com
2026-01-09 09:25
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=hnk0gDUVInXz4mLIfvgxToGp0HjSs3DvVKbTLJe78Nw%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767950742"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=hnk0gDUVInXz4mLIfvgxToGp0HjSs3DvVKbTLJe78Nw%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767950742"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 103ecd4f-0763-ac58-c6a9-18661b8e4269
X-Runtime: 0.007537
Date: Fri, 09 Jan 2026 09:25:42 GMT
Connection: close
Open service 3.33.241.96:443 · api.vantademo.com
2026-01-02 16:22
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=Zvd%2FcfFl6fGJ4TQFaONddFUWeRevYD671Z4XQTXI8vY%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767370922"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=Zvd%2FcfFl6fGJ4TQFaONddFUWeRevYD671Z4XQTXI8vY%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767370922"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 2fbad08b-f0f6-a9eb-ec81-dbb2c8061d65
X-Runtime: 0.003203
Date: Fri, 02 Jan 2026 16:22:02 GMT
Connection: close
Open service 13.248.213.92:80 · api.vantademo.com
2026-01-02 13:30
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=hXv4hU%2FDgre0tjk6RyUh28JxpH5Y6A%2BQd43L92yAuRA%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767360638"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=hXv4hU%2FDgre0tjk6RyUh28JxpH5Y6A%2BQd43L92yAuRA%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767360638"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: dbdfbfcc-2aed-81de-fea7-b139d3b5bc55
X-Runtime: 0.008437
Date: Fri, 02 Jan 2026 13:30:38 GMT
Connection: close
Open service 13.248.213.92:80 · api.vantademo.com
2025-12-30 12:44
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=tHmq7DWxXlnaoxc8OH4rKczikvuOxAq9ExVKYTyTpts%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767098676"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=tHmq7DWxXlnaoxc8OH4rKczikvuOxAq9ExVKYTyTpts%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767098676"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 7e5f40e0-9943-334d-d930-57f1f5c338f3
X-Runtime: 0.008917
Date: Tue, 30 Dec 2025 12:44:36 GMT
Connection: close
Open service 3.33.241.96:443 · api.vantademo.com
2025-12-23 06:33
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=r7ATngBE89BcSAOBkEgsqA249lg0%2BbXYAeuHrNrfaSU%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766471614"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=r7ATngBE89BcSAOBkEgsqA249lg0%2BbXYAeuHrNrfaSU%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766471614"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: faa853f7-0700-567e-9c52-c3e524d83b92
X-Runtime: 0.009022
Date: Tue, 23 Dec 2025 06:33:34 GMT
Connection: close
Open service 13.248.213.92:80 · api.vantademo.com
2025-12-22 07:50
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=TsiwlzkSZUa55c9ZJ6EopxAye6E4uaH51GZXduW8ngQ%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766389860"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=TsiwlzkSZUa55c9ZJ6EopxAye6E4uaH51GZXduW8ngQ%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766389860"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 5efd4199-cbc2-0e81-55f2-85cb12221946
X-Runtime: 0.005590
Date: Mon, 22 Dec 2025 07:51:00 GMT
Connection: close
Open service 3.33.241.96:443 · api.vantademo.com
2025-12-21 06:15
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=mPzxFSHfPoBzGqTcEK5542HXe9dt%2BffpDEvv6CPh0eY%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766297744"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=mPzxFSHfPoBzGqTcEK5542HXe9dt%2BffpDEvv6CPh0eY%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766297744"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 246872d1-3eeb-db5e-6627-ae06d4acb833
X-Runtime: 0.008638
Date: Sun, 21 Dec 2025 06:15:44 GMT
Connection: close
Open service 13.248.213.92:80 · api.vantademo.com
2025-12-20 07:07
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=o0iGq6OEtkgmwIf3Ii2kF%2BInRB5Wt8Hwwa7QFj4Uw60%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766214448"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=o0iGq6OEtkgmwIf3Ii2kF%2BInRB5Wt8Hwwa7QFj4Uw60%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766214448"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 45263c30-6a46-7a75-04ef-36704d5b57e8
X-Runtime: 0.005248
Date: Sat, 20 Dec 2025 07:07:28 GMT
Connection: close
Open service 3.33.241.96:443 · api.vantademo.com
2025-12-19 07:40
HTTP/1.1 404 Not Found
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=wpGlxdEo8s6aoueyc1FEfKvMYqLkRqWj5AAFK3RWunA%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766130016"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=wpGlxdEo8s6aoueyc1FEfKvMYqLkRqWj5AAFK3RWunA%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766130016"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 3524fd8a-a3bb-b554-a13b-b921aae45303
X-Runtime: 0.003743
Date: Fri, 19 Dec 2025 07:40:16 GMT
Connection: close