Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43a81ce88f562b774ca7894bf46905fba96905fba9
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /coupons GET /coupons/hascoupon GET /coupons/verify GET /language
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d63a747c263a747c263a747c263a747c2
Found 1 files trough .DS_Store spidering: /application
Open service 194.1.147.99:443 · chessfox.com
2026-01-23 15:37
HTTP/1.1 200 OK Date: Fri, 23 Jan 2026 15:37:45 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 32926 Connection: close Vary: Accept-Encoding Vary: Accept-Encoding Cache-Control: public, max-age=-2912,public Expires: Fri, 23 Jan 2026 14:49:13 GMT Last-Modified: Fri, 23 Jan 2026 13:49:13 GMT Etag: "809e-69737c59-0;;;" Accept-Ranges: bytes Vary: Accept-Encoding,Origin WPX: 1 Pragma: public X-turbo-charged-by: LiteSpeed X-Edge-Location: WPX CLOUD/AMS03 alt-svc: h3=":443"; ma=86400 x-quic: h3 Server: WPX CLOUD/AMS03 X-Cache-Status: EXPIRED Page title: CHESSFOX – Simplified Chess Training <!DOCTYPE html><html lang="en-US"><head><meta charset="UTF-8"><link media="all" href="https://chessfox.com/wp-content/cache/autoptimize/autoptimize_906c33dd0cf7072a402b2d1c1ece4dc7.php" rel="stylesheet"><title>CHESSFOX – Simplified Chess Training</title><meta name='robots' content='max-image-preview:large' /><meta name="viewport" content="width=device-width, initial-scale=1"><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Feed" href="https://chessfox.com/feed/" /><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Comments Feed" href="https://chessfox.com/comments/feed/" /><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Try The 10-Day Chess Challenge Comments Feed" href="https://chessfox.com/10-day-chess-challenge-summary/feed/" /><link rel="alternate" title="oEmbed (JSON)" type="application/json+oembed" href="https://chessfox.com/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fchessfox.com%2F" /><link rel="alternate" title="oEmbed (XML)" type="text/xml+oembed" href="https://chessfox.com/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fchessfox.com%2F&format=xml" /><link rel="https://api.w.org/" href="https://chessfox.com/wp-json/" /><link rel="alternate" title="JSON" type="application/json" href="https://chessfox.com/wp-json/wp/v2/pages/205" /><link rel="EditURI" type="application/rsd+xml" title="RSD" href="https://chessfox.com/xmlrpc.php?rsd" /><meta name="generator" content="WordPress 6.9" /><link rel="canonical" href="https://chessfox.com/" /><link rel='shortlink' href='https://chessfox.com/' /><link rel="pingback" href="https://chessfox.com/xmlrpc.php"><link rel="icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-32x32.png" sizes="32x32" /><link rel="icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-192x192.png" sizes="192x192" /><link rel="apple-touch-icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-180x180.png" /><meta name="msapplication-TileImage" content="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-270x270.png" /></head><body class="home wp-singular page-template-default page page-id-205 wp-custom-logo wp-embed-responsive wp-theme-generatepress no-sidebar nav-float-right one-container header-aligned-left dropdown-hover" itemtype="https://schema.org/WebPage" itemscope> <a class="screen-reader-text skip-link" href="#content" title="Skip to content">Skip to content</a><header class="site-header has-inline-mobile-toggle" id="masthead" aria-label="Site" itemtype="https://schema.org/WPHeader" itemscope><div class="inside-header grid-container"><div class="site-logo"> <a href="https://chessfox.com/" rel="home"> <img class="header-image is-logo-image" alt="CHESSFOX" src="https://chessfox.com/wp-content/uploads/2024/11/CHESSFOX-LOGO-header.png" width="528" height="82" /> </a></div><nav class="main-navigation mobile-menu-control-wrapper" id="mobile-menu-control-wrapper" aria-label="Mobile Toggle"> <button data-nav="site-navigation" class="menu-toggle" aria-controls="primary-menu" aria-expanded="false"> <span class="gp-icon icon-menu-bars"><svg viewBox="0 0 512 512" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="1em" height="1em"><path d="M0 96c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24zm0 160c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24zm0 160c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24z" /></svg><svg viewBox="0 0 512 512" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="1em" height="1em"><path d="M71.029 71.029c9.373-9.372 24.569-9.372 33.942 0L256 222.059l151.029-151.03c9.373-9.372 24.569-9.372 33.942 0 9.372 9.373 9.372 24.569 0 33.942L289.941 256l151.03 151.029c9.372 9.373 9.372 24.569 0 33.942-9.373 9.372-24.569 9.372-33.942 0L256 289.941l-151.029 151.03c-9.373 9.372-24.569 9.372-33.942 0-9.
Open service 194.1.147.99:443 · www.chessfox.com
2026-01-23 08:41
HTTP/1.1 301 Moved Permanently Date: Fri, 23 Jan 2026 08:41:11 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.29 X-Pingback: https://chessfox.com/xmlrpc.php X-UA-Compatible: IE=edge Expires: Fri, 23 Jan 2026 09:41:11 GMT Cache-Control: max-age=3600 X-Redirect-By: WordPress Location: https://chessfox.com/ Vary: Accept-Encoding,Origin WPX: 1 X-turbo-charged-by: LiteSpeed X-Edge-Location: WPX CLOUD/SGPR01 alt-svc: h3=":443"; ma=86400 x-quic: h3 Server: WPX CLOUD/SGPR01 X-Cache-Status: MISS
Open service 194.1.147.37:80 · www.chessfox.com
2026-01-23 05:10
HTTP/1.1 301 Moved Permanently Date: Fri, 23 Jan 2026 05:10:22 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.29 X-Pingback: http://chessfox.com/xmlrpc.php X-UA-Compatible: IE=edge Expires: Fri, 23 Jan 2026 06:10:21 GMT Cache-Control: max-age=3600 X-Redirect-By: WordPress Location: https://chessfox.com/ Vary: Accept-Encoding,Origin WPX: 1 X-turbo-charged-by: LiteSpeed X-Edge-Location: WPX CLOUD/TOR01 Server: WPX CLOUD/TOR01 X-Cache-Status: HIT
Open service 194.1.147.37:443 · chessfox.com
2026-01-21 22:01
HTTP/1.1 200 OK Date: Wed, 21 Jan 2026 22:01:12 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 32926 Connection: close Vary: Accept-Encoding Vary: Accept-Encoding Cache-Control: public, max-age=3598,public Expires: Wed, 21 Jan 2026 23:01:10 GMT Last-Modified: Wed, 21 Jan 2026 22:01:10 GMT Etag: "809e-69714ca6-0;;;" Vary: Accept-Encoding,Origin WPX: 1 Pragma: public X-turbo-charged-by: LiteSpeed X-Edge-Location: WPX CLOUD/CVT01 alt-svc: h3=":443"; ma=86400 x-quic: h3 Server: WPX CLOUD/CVT01 X-Cache-Status: MISS Accept-Ranges: bytes Page title: CHESSFOX – Simplified Chess Training <!DOCTYPE html><html lang="en-US"><head><meta charset="UTF-8"><link media="all" href="https://chessfox.com/wp-content/cache/autoptimize/autoptimize_906c33dd0cf7072a402b2d1c1ece4dc7.php" rel="stylesheet"><title>CHESSFOX – Simplified Chess Training</title><meta name='robots' content='max-image-preview:large' /><meta name="viewport" content="width=device-width, initial-scale=1"><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Feed" href="https://chessfox.com/feed/" /><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Comments Feed" href="https://chessfox.com/comments/feed/" /><link rel="alternate" type="application/rss+xml" title="CHESSFOX » Try The 10-Day Chess Challenge Comments Feed" href="https://chessfox.com/10-day-chess-challenge-summary/feed/" /><link rel="alternate" title="oEmbed (JSON)" type="application/json+oembed" href="https://chessfox.com/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fchessfox.com%2F" /><link rel="alternate" title="oEmbed (XML)" type="text/xml+oembed" href="https://chessfox.com/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fchessfox.com%2F&format=xml" /><link rel="https://api.w.org/" href="https://chessfox.com/wp-json/" /><link rel="alternate" title="JSON" type="application/json" href="https://chessfox.com/wp-json/wp/v2/pages/205" /><link rel="EditURI" type="application/rsd+xml" title="RSD" href="https://chessfox.com/xmlrpc.php?rsd" /><meta name="generator" content="WordPress 6.9" /><link rel="canonical" href="https://chessfox.com/" /><link rel='shortlink' href='https://chessfox.com/' /><link rel="pingback" href="https://chessfox.com/xmlrpc.php"><link rel="icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-32x32.png" sizes="32x32" /><link rel="icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-192x192.png" sizes="192x192" /><link rel="apple-touch-icon" href="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-180x180.png" /><meta name="msapplication-TileImage" content="https://chessfox.com/wp-content/uploads/2019/01/cropped-chessfox-favicon-plain-2-270x270.png" /></head><body class="home wp-singular page-template-default page page-id-205 wp-custom-logo wp-embed-responsive wp-theme-generatepress no-sidebar nav-float-right one-container header-aligned-left dropdown-hover" itemtype="https://schema.org/WebPage" itemscope> <a class="screen-reader-text skip-link" href="#content" title="Skip to content">Skip to content</a><header class="site-header has-inline-mobile-toggle" id="masthead" aria-label="Site" itemtype="https://schema.org/WPHeader" itemscope><div class="inside-header grid-container"><div class="site-logo"> <a href="https://chessfox.com/" rel="home"> <img class="header-image is-logo-image" alt="CHESSFOX" src="https://chessfox.com/wp-content/uploads/2024/11/CHESSFOX-LOGO-header.png" width="528" height="82" /> </a></div><nav class="main-navigation mobile-menu-control-wrapper" id="mobile-menu-control-wrapper" aria-label="Mobile Toggle"> <button data-nav="site-navigation" class="menu-toggle" aria-controls="primary-menu" aria-expanded="false"> <span class="gp-icon icon-menu-bars"><svg viewBox="0 0 512 512" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="1em" height="1em"><path d="M0 96c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24zm0 160c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24zm0 160c0-13.255 10.745-24 24-24h464c13.255 0 24 10.745 24 24s-10.745 24-24 24H24c-13.255 0-24-10.745-24-24z" /></svg><svg viewBox="0 0 512 512" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="1em" height="1em"><path d="M71.029 71.029c9.373-9.372 24.569-9.372 33.942 0L256 222.059l151.029-151.03c9.373-9.372 24.569-9.372 33.942 0 9.372 9.373 9.372 24.569 0 33.942L289.941 256l151.03 151.029c9.372 9.373 9.372 24.569 0 33.942-9.373 9.372-24.569 9.372-33.942 0L256 289.941l-151.029 151.03c-9.373 9.372-24.569 9.372-33.942 0-9.