AmazonS3
tcp/443
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522cc579b16
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@github.com:piggymoney/pm-assets.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "dev"] remote = origin merge = refs/heads/prod
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522cc579b16
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@github.com:piggymoney/pm-assets.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "dev"] remote = origin merge = refs/heads/prod
Open service 13.224.189.121:443 ยท assets.spriggy.com.au
2026-01-23 11:23
HTTP/1.1 200 OK Content-Type: binary/octet-stream Content-Length: 0 Connection: close Last-Modified: Wed, 02 Dec 2015 00:56:58 GMT x-amz-server-side-encryption: AES256 Accept-Ranges: bytes Server: AmazonS3 Date: Fri, 23 Jan 2026 11:23:26 GMT ETag: "d41d8cd98f00b204e9800998ecf8427e" X-Cache: Hit from cloudfront Via: 1.1 a18a2e9b5b87821d11a48e0cd5d3b578.cloudfront.net (CloudFront) X-Amz-Cf-Pop: ATH51-P1 X-Amz-Cf-Id: cgUz_pWaXvU5s6eiV6M3iNbv7wp0jgbGgbM_2zk7SJDBGyEy5xxhnQ== Age: 1