Heroku
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c8329733f8329733f93b77d9b240ac757bb18cb8317310bd8
Found 10 files trough .DS_Store spidering: /404.html /422.html /blank.png /confirmation.html /favicon.ico /packs /portraits /pulse.svg /spinner.svg /tangrams
Severity: low
Fingerprint: 5f32cf5d6962f09cec7f8772ec7f8772159855a0eb5bbe5662f82d32553b6d83
Found 11 files trough .DS_Store spidering: /404.html /422.html /assets /blank.png /confirmation.html /favicon.ico /packs /portraits /pulse.svg /spinner.svg /tangrams
Open service 3.33.241.96:443 · app.itsourhub.com
2026-01-09 14:31
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Feature-Policy: geolocation 'self'; camera 'none'; microphone 'none'; usb 'none'; fullscreen 'self'; payment 'self'
Location: https://app.itsourhub.com/organizations/ourhub/tangram_subscription
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=uWV2mHhFy%2FVZLIeU5wUG0xIrdYYl9A1WUiJSlvwa02U%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767969087"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=uWV2mHhFy%2FVZLIeU5wUG0xIrdYYl9A1WUiJSlvwa02U%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767969087"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 404e7133-56f2-03df-f67b-65e6c99c907b
X-Runtime: 0.010639
X-Xss-Protection: 0
Date: Fri, 09 Jan 2026 14:31:27 GMT
Connection: close
Open service 3.33.241.96:443 · app.itsourhub.com
2026-01-02 15:04
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Feature-Policy: geolocation 'self'; camera 'none'; microphone 'none'; usb 'none'; fullscreen 'self'; payment 'self'
Location: https://app.itsourhub.com/organizations/ourhub/tangram_subscription
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=MrpsuWpNutf%2Bqpx7w4kcQLdP31s52W0r2vtd39pAv6I%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767366289"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=MrpsuWpNutf%2Bqpx7w4kcQLdP31s52W0r2vtd39pAv6I%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767366289"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 686dbe50-db38-1376-b8f0-abe45bfd3f1c
X-Runtime: 0.008591
X-Xss-Protection: 0
Date: Fri, 02 Jan 2026 15:04:49 GMT
Connection: close
Open service 3.33.241.96:443 · app.itsourhub.com
2025-12-23 06:17
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Feature-Policy: geolocation 'self'; camera 'none'; microphone 'none'; usb 'none'; fullscreen 'self'; payment 'self'
Location: https://app.itsourhub.com/organizations/ourhub/tangram_subscription
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=fJuVgG68CSHc0PNFkGFPxciZO4k4mtCN3Znyb3v0NJk%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766470675"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=fJuVgG68CSHc0PNFkGFPxciZO4k4mtCN3Znyb3v0NJk%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766470675"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: baa22de6-771e-be4b-4d0e-23719e63054a
X-Runtime: 0.015500
X-Xss-Protection: 0
Date: Tue, 23 Dec 2025 06:17:55 GMT
Connection: close
Open service 3.33.241.96:443 · app.itsourhub.com
2025-12-21 02:56
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Feature-Policy: geolocation 'self'; camera 'none'; microphone 'none'; usb 'none'; fullscreen 'self'; payment 'self'
Location: https://app.itsourhub.com/organizations/ourhub/tangram_subscription
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=P8GCaPxDVRMmK8TeXaZ9dasIQQgtk%2B8%2Fx3xmGufYoXU%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766285794"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=P8GCaPxDVRMmK8TeXaZ9dasIQQgtk%2B8%2Fx3xmGufYoXU%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766285794"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: db38d17f-e371-acd7-8d32-d58c7bcb15c4
X-Runtime: 0.010684
X-Xss-Protection: 0
Date: Sun, 21 Dec 2025 02:56:34 GMT
Connection: close
Open service 3.33.241.96:443 · app.itsourhub.com
2025-12-19 05:34
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Feature-Policy: geolocation 'self'; camera 'none'; microphone 'none'; usb 'none'; fullscreen 'self'; payment 'self'
Location: https://app.itsourhub.com/organizations/ourhub/tangram_subscription
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=J2QqRmcwvpHzi%2FCIQCMO4Lmcm0YGOWwFFeSNplTdDH4%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766122493"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=J2QqRmcwvpHzi%2FCIQCMO4Lmcm0YGOWwFFeSNplTdDH4%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766122493"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept-Encoding
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: bd924622-2929-bf89-0e6d-421007d916a6
X-Runtime: 0.012136
X-Xss-Protection: 0
Date: Fri, 19 Dec 2025 05:34:53 GMT
Connection: close