cloudflare
tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Open service 188.114.96.12:80 · apiv2.geniousing.com
2026-01-08 23:31
HTTP/1.1 404 Not Found
Date: Thu, 08 Jan 2026 23:31:26 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 48
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Content-Security-Policy: default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';img-src 'self' data:;object-src 'none';script-src 'self';script-src-attr 'none';style-src 'self' https: 'unsafe-inline';upgrade-insecure-requests
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Origin-Agent-Cluster: ?1
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-DNS-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-XSS-Protection: 0
Vary: Origin, Accept-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Expose-Headers: Content-Range,X-Content-Range,Content-Disposition
x-correlation-id: 864341c1-d4d7-4505-a588-85f6d781f1b0
ETag: W/"30-ajwr0sUkRZxum2HD2VmV8q+VOB8"
cf-cache-status: DYNAMIC
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=V5mm1UvTtsQv6%2FqkWcTVLOIAvu8ElISswNPbvddb4Curhe6e3CejEBOxJgLX1KgFDDwjgBbUr%2FvbjY8MsQFhsc1rtMlWO9tRLH2RUs%2BiVTUTyw%3D%3D"}]}
CF-RAY: 9baf7d061ec1f5e2-AMS
alt-svc: h3=":443"; ma=86400
{"success":false,"message":"Route not found: /"}
Open service 188.114.96.12:80 · apiv2.geniousing.com
2026-01-01 22:05
HTTP/1.1 404 Not Found
Date: Thu, 01 Jan 2026 22:05:16 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 48
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Origin-Agent-Cluster: ?1
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-DNS-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-XSS-Protection: 0
Vary: Origin, Accept-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Expose-Headers: Content-Range,X-Content-Range,Content-Disposition
x-correlation-id: 8c638499-a5a1-4932-94ea-ce263a5c2140
ETag: W/"30-ajwr0sUkRZxum2HD2VmV8q+VOB8"
cf-cache-status: DYNAMIC
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=23,cfOrigin;dur=114
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=%2BA1caBoXGUUlBLGI%2FP98NMI7%2Fc1SisglcX0jSAL0a7R93Q3n61PsJtlYYCAvTp5Cel4MnhqHJerQ%2B85oOpSG8PhR2m1hjA4TmCV2BoTsxC8Y8Q%3D%3D"}]}
CF-RAY: 9b75512efc37a222-YYZ
alt-svc: h3=":443"; ma=86400
{"success":false,"message":"Route not found: /"}
Open service 188.114.96.12:80 · apiv2.geniousing.com
2025-12-30 06:26
HTTP/1.1 404 Not Found
Date: Tue, 30 Dec 2025 06:26:42 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 48
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Origin-Agent-Cluster: ?1
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-DNS-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-XSS-Protection: 0
Vary: Origin, Accept-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Expose-Headers: Content-Range,X-Content-Range
x-correlation-id: a078d99c-27fd-4086-9737-22f97ab75c28
ETag: W/"30-ajwr0sUkRZxum2HD2VmV8q+VOB8"
cf-cache-status: DYNAMIC
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=FkNbmMGIGaWH4aFdY6Lq9UBrsTr2HmJywuotsmAbviF76GNEhdh5zlaXAzsXRPnZJkK237iXhTnXWOREAPZh8Usm1KfTU9LQyrHgFAhHSRsdVqch"}]}
CF-RAY: 9b5f77938838dbc9-FRA
alt-svc: h3=":443"; ma=86400
{"success":false,"message":"Route not found: /"}
Open service 188.114.96.12:80 · apiv2.geniousing.com
2025-12-22 12:10
HTTP/1.1 404 Not Found
Date: Mon, 22 Dec 2025 12:10:25 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 48
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Origin-Agent-Cluster: ?1
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-DNS-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-XSS-Protection: 0
Vary: Origin, Accept-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Expose-Headers: Content-Range,X-Content-Range
x-correlation-id: ddd8d17d-7c5a-48ba-adaa-4be8336ea930
ETag: W/"30-ajwr0sUkRZxum2HD2VmV8q+VOB8"
cf-cache-status: DYNAMIC
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=22,cfOrigin;dur=419
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=q0uYxeAJi%2FZ8PxOmTzLWkleJSW%2BOeg3a9so9qP9cowjkomleBaCHUw%2BqSRo2YUYIsKxFexrVswXtUDiL8gM%2B9gw9gY3cq7LlFmSRK%2FcUUNmrBQ%3D%3D"}]}
CF-RAY: 9b1f8410880eef6e-SIN
alt-svc: h3=":443"; ma=86400
{"success":false,"message":"Route not found: /"}
Open service 188.114.96.12:80 · apiv2.geniousing.com
2025-12-20 10:58
HTTP/1.1 404 Not Found
Date: Sat, 20 Dec 2025 10:58:04 GMT
Content-Type: application/json; charset=utf-8
Content-Length: 48
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Origin-Agent-Cluster: ?1
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-DNS-Prefetch-Control: off
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-XSS-Protection: 0
Vary: Origin, Accept-Encoding
Access-Control-Allow-Credentials: true
Access-Control-Expose-Headers: Content-Range,X-Content-Range
x-correlation-id: 7b157ab7-d007-492a-ac17-cfe026ffbd0d
ETag: W/"30-ajwr0sUkRZxum2HD2VmV8q+VOB8"
cf-cache-status: DYNAMIC
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=1dQoKqVkuo%2BTRKeHgawSHm%2F8k0ezHqN6UHNK0vfP8uzb7XqZUwo1cINfIQgoh3G8yI3lnI8btxD6X0CLn2Hm0nU5i1a0vJ%2FSqMZTz71mJifjPBeR"}]}
CF-RAY: 9b0e9f57d8570493-FRA
alt-svc: h3=":443"; ma=86400
{"success":false,"message":"Route not found: /"}