Netlify
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43be2c0c5d94ef082a5d1a43c6213833b801dde8a9
Public Swagger UI/API detected at path: /swagger.json - sample paths:
ANY /networktest-report/{id}
ANY /networktest/{id}
GET /assets
GET /assets/{assetId}
GET /ip-ranges
GET /qualityrtc/result/{id}
GET /testagents/{testAgentId}
GET /testagents/{testAgentId}/files
GET /testagents/{testAgentId}/screenshots
GET /testruns/{testRunId}
GET /tests
GET /tests/{testId}
POST /qualityrtc/invite
POST /testruns/externalValue/{session_name}
POST /tests/{testId}/run
POST /watchrtc/highlights
PUT /watchrtc/room/{rtcRoomId}/peer/{rtcPeerId}/user-rating
Open service 35.157.26.135:443 · apidoc.dev.testrtc.com
2026-01-09 22:42
HTTP/1.1 200 OK
Accept-Ranges: bytes
Age: 3
Cache-Control: public,max-age=0,must-revalidate
Cache-Status: "Netlify Edge"; hit
Content-Length: 815
Content-Type: text/html; charset=UTF-8
Date: Fri, 09 Jan 2026 22:42:42 GMT
Etag: "2ec5f696a3ba7b25a38df38d93534dc4-ssl"
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KEJET87EJPMV0TM5556HHF24
Connection: close
Page title: testRTC API
<!doctype html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"><link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,500"><link rel="stylesheet" href="https://fonts.googleapis.com/icon?family=Material+Icons"><link rel="manifest" href="/manifest.json"/><meta name="msapplication-TileColor" content="#ffffff"><meta name="theme-color" content="#ffffff"><title>testRTC API</title><style>#root,body,html{height:100%}</style><script defer="defer" src="/static/js/main.00108c67.js"></script><link href="/static/css/main.0a456a2b.css" rel="stylesheet"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html>
Open service 35.157.26.135:443 · apidoc.dev.testrtc.com
2026-01-02 15:32
HTTP/1.1 200 OK
Accept-Ranges: bytes
Age: 0
Cache-Control: public,max-age=0,must-revalidate
Cache-Status: "Netlify Edge"; hit
Content-Length: 815
Content-Type: text/html; charset=UTF-8
Date: Fri, 02 Jan 2026 15:32:56 GMT
Etag: "2ec5f696a3ba7b25a38df38d93534dc4-ssl"
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KDZNE9Z00TFHTHPFBCWRWG03
Connection: close
Page title: testRTC API
<!doctype html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"><link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,500"><link rel="stylesheet" href="https://fonts.googleapis.com/icon?family=Material+Icons"><link rel="manifest" href="/manifest.json"/><meta name="msapplication-TileColor" content="#ffffff"><meta name="theme-color" content="#ffffff"><title>testRTC API</title><style>#root,body,html{height:100%}</style><script defer="defer" src="/static/js/main.00108c67.js"></script><link href="/static/css/main.0a456a2b.css" rel="stylesheet"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html>
Open service 35.157.26.135:443 · apidoc.dev.testrtc.com
2025-12-22 23:32
HTTP/1.1 200 OK
Accept-Ranges: bytes
Age: 1
Cache-Control: public,max-age=0,must-revalidate
Cache-Status: "Netlify Edge"; hit
Content-Length: 815
Content-Type: text/html; charset=UTF-8
Date: Mon, 22 Dec 2025 23:32:20 GMT
Etag: "2ec5f696a3ba7b25a38df38d93534dc4-ssl"
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KD46G658WB3CPKDSJBHXV482
Connection: close
Page title: testRTC API
<!doctype html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"><link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,500"><link rel="stylesheet" href="https://fonts.googleapis.com/icon?family=Material+Icons"><link rel="manifest" href="/manifest.json"/><meta name="msapplication-TileColor" content="#ffffff"><meta name="theme-color" content="#ffffff"><title>testRTC API</title><style>#root,body,html{height:100%}</style><script defer="defer" src="/static/js/main.00108c67.js"></script><link href="/static/css/main.0a456a2b.css" rel="stylesheet"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html>
Open service 35.157.26.135:443 · apidoc.dev.testrtc.com
2025-12-21 07:42
HTTP/1.1 200 OK
Accept-Ranges: bytes
Age: 0
Cache-Control: public,max-age=0,must-revalidate
Cache-Status: "Netlify Edge"; hit
Content-Length: 815
Content-Type: text/html; charset=UTF-8
Date: Sun, 21 Dec 2025 07:42:22 GMT
Etag: "2ec5f696a3ba7b25a38df38d93534dc4-ssl"
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KCZXR1PJAH9YPXPJVB955G2P
Connection: close
Page title: testRTC API
<!doctype html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"><link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,500"><link rel="stylesheet" href="https://fonts.googleapis.com/icon?family=Material+Icons"><link rel="manifest" href="/manifest.json"/><meta name="msapplication-TileColor" content="#ffffff"><meta name="theme-color" content="#ffffff"><title>testRTC API</title><style>#root,body,html{height:100%}</style><script defer="defer" src="/static/js/main.00108c67.js"></script><link href="/static/css/main.0a456a2b.css" rel="stylesheet"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html>
Open service 35.157.26.135:443 · apidoc.dev.testrtc.com
2025-12-19 09:57
HTTP/1.1 200 OK
Accept-Ranges: bytes
Age: 1
Cache-Control: public,max-age=0,must-revalidate
Cache-Status: "Netlify Edge"; hit
Content-Length: 815
Content-Type: text/html; charset=UTF-8
Date: Fri, 19 Dec 2025 09:57:52 GMT
Etag: "2ec5f696a3ba7b25a38df38d93534dc4-ssl"
Server: Netlify
Strict-Transport-Security: max-age=31536000
X-Nf-Request-Id: 01KCV0PPPZB50JZYJ0VMZ1Y4WF
Connection: close
Page title: testRTC API
<!doctype html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"><link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,500"><link rel="stylesheet" href="https://fonts.googleapis.com/icon?family=Material+Icons"><link rel="manifest" href="/manifest.json"/><meta name="msapplication-TileColor" content="#ffffff"><meta name="theme-color" content="#ffffff"><title>testRTC API</title><style>#root,body,html{height:100%}</style><script defer="defer" src="/static/js/main.00108c67.js"></script><link href="/static/css/main.0a456a2b.css" rel="stylesheet"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html>