cloudflare
tcp/443 tcp/80 tcp/8443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3d9181c39a346585bfbe2b3f59676f8159676f815
GraphQL introspection enabled at /graphql Types: 12 (by kind: ENUM: 2, OBJECT: 7, SCALAR: 3) Operations: - Query: Query | fields: _empty Directives: deprecated, include, skip (total: 3)
Open service 2606:4700:7::60:8443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 522 Date: Mon, 12 Jan 2026 23:41:02 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close X-Frame-Options: SAMEORIGIN Referrer-Policy: same-origin Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Server: cloudflare CF-RAY: 9bd0801cdb5b97fb-SIN alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 2606:4700:7::60:443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 302 Found Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9bd080173cc8f8ac-YYZ content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=DH1u8zPAeDWYobeE65_smMe44gfYC5LB4Nl2EuhasZk-1768261241-1.0.1.1-dwX8Ncjb6MNF1CjFYj.1kpsInKEeTe5IVhWvk01jS9K.UaQxO6A8ADk8KEIM7n63Js543_ipDPBrvDHUq2SKV6SrLBswOymozBUBYTXKkFY; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 2a06:98c1:58::60:8443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 522 Date: Mon, 12 Jan 2026 23:41:01 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close X-Frame-Options: SAMEORIGIN Referrer-Policy: same-origin Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Server: cloudflare CF-RAY: 9bd0801c59fd697f-FRA alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 172.66.0.96:443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 302 Found Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9bd08016292271bf-FRA content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=Xivy_PZTrYGEW3WQjYjfwZe1f5oTPUu7XnfFw7h9uNc-1768261241-1.0.1.1-Qlm7ChVpfhuXw8nNa.lsBxDLRhqMCE76uXCGHVmHnYpQ3PKgc.rNCLr3bhz0_Q3C9tU8TzqsRjkPuvd8687D46ui9GkNVvHfzxjK5EyI.6M; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 2606:4700:7::60:80 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 301 Moved Permanently Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/html Content-Length: 167 Connection: close Cache-Control: max-age=3600 Expires: Tue, 13 Jan 2026 00:40:41 GMT Location: https://cms.ellensonck.com/ Set-Cookie: __cf_bm=Oy0MSvd74g9CSLunYvwCrXLH4zqRWm2Pr_ZZtIUXID0-1768261241-1.0.1.1-aUkWE_qCbCXaCOz31FT7bl8MqoT.sEKlSEumKZlDX0mtrzMLA1TAH7NOIE3dvCl3CaMhv4XdJnxIbReyPu7eu0TJYqiHWEOKO.K8Fhlj8gM; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly Server: cloudflare CF-RAY: 9bd080160a48b2aa-AMS alt-svc: h3=":443"; ma=86400 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>cloudflare</center> </body> </html>
Open service 162.159.140.98:8443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 522 Date: Mon, 12 Jan 2026 23:41:01 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close X-Frame-Options: SAMEORIGIN Referrer-Policy: same-origin Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Server: cloudflare CF-RAY: 9bd0801c3e6145e2-SIN alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 2a06:98c1:58::60:80 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 301 Moved Permanently Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/html Content-Length: 167 Connection: close Cache-Control: max-age=3600 Expires: Tue, 13 Jan 2026 00:40:41 GMT Location: https://cms.ellensonck.com/ Set-Cookie: __cf_bm=0obeBts_zislyYyxDED5TIIcm86c1PxHbTnK34RV5FA-1768261241-1.0.1.1-nyWXh2l5apwPRNtO1hSFIvpuhVojZx1BgO7JKUdsu59yDmf7FXjaWD4kTwl08Vsp4H3F74lfV7h3ljqFA7ttas3n6bcETZ21JWqbcYHC3gM; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly Server: cloudflare CF-RAY: 9bd08015dc6d726b-EWR alt-svc: h3=":443"; ma=86400 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>cloudflare</center> </body> </html>
Open service 162.159.140.98:80 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 301 Moved Permanently Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/html Content-Length: 167 Connection: close Cache-Control: max-age=3600 Expires: Tue, 13 Jan 2026 00:40:41 GMT Location: https://cms.ellensonck.com/ Set-Cookie: __cf_bm=eOkA2KOXRVQX2WVEWOLICHhTn4YCzHBgukqVz_9RWec-1768261241-1.0.1.1-0Cpv_eLcdCOz0Giz4j4VlLxVbp.vcQpXK1nf_L5_HYcbV6a70R0SAu4YA.dlY9Ejw4Y7I7dglr6afdOa9HJJC0oM0VOt7Fu1pauFRZ5yDlE; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly Server: cloudflare CF-RAY: 9bd08015ac03f46c-YYZ alt-svc: h3=":443"; ma=86400 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>cloudflare</center> </body> </html>
Open service 172.66.0.96:8443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 522 Date: Mon, 12 Jan 2026 23:41:01 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close X-Frame-Options: SAMEORIGIN Referrer-Policy: same-origin Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Server: cloudflare CF-RAY: 9bd0801ba906b22e-BLR alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 162.159.140.98:443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 302 Found Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9bd08015891a6619-AMS content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=LK07q9j.MFli7gd.C57mqP0OFx1bv.04_r7z6Krjddc-1768261241-1.0.1.1-htGe3nemvJLkZ1eSmQakE9nQlphXXtHmUj2hN60OjS1WSYq5DKgGBmPZEB5Klo33Ywo_dQTfGQGRsyBdvtxMXYNG20eCSKJ4GvzvJNcctqM; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:80 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 301 Moved Permanently Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/html Content-Length: 167 Connection: close Cache-Control: max-age=3600 Expires: Tue, 13 Jan 2026 00:40:41 GMT Location: https://cms.ellensonck.com/ Set-Cookie: __cf_bm=yIe2oP4JCetPqDmJ8ol.M5Zi_6N0XLu9gleirv3LbUQ-1768261241-1.0.1.1-XQ1T1Y1kSrVrxr.8ocRKUfHl3LE2NEHRyEt_b1DULZ1x_yBpxUIWIjMJN.S1GMqCykx240mF5XWFiY__lUGRuSC0DDHDSZ0ozmT.mMEE2Gc; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly Server: cloudflare CF-RAY: 9bd080157aa8196c-LHR alt-svc: h3=":443"; ma=86400 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>cloudflare</center> </body> </html>
Open service 2a06:98c1:58::60:443 · cms.ellensonck.com
2026-01-12 23:40
HTTP/1.1 302 Found Date: Mon, 12 Jan 2026 23:40:41 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9bd0801548e0d349-FRA content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=gNkyeTqj2cDPKzGPSOYdMWOHUGXaTG.JRvxvEnwir7Q-1768261241-1.0.1.1-3TDbRgTwgTsUbHP6kgy6RQmGOdn1sNmDHhbg0QChTE3PBSBEPZq69Tpp8iYa0wcIoGqG78L6.mdp5.gO8C1ocVuO7XFNQpGsqMfS.EF.p9w; path=/; expires=Tue, 13-Jan-26 00:10:41 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:443 · cms.ellensonck.com
2026-01-08 23:39
HTTP/1.1 302 Found Date: Thu, 08 Jan 2026 23:39:43 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9baf892abf0e796f-AMS content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=KW70NPkxQRE2VPBULNK9VFCfz_zNmS5xagiEU1WzXoY-1767915583-1.0.1.1-oUSGYftA1CjPUz6cbGAF.0GzOmqix1aaCIzhU..9Va2QZufhZL4dK9thVXlDa3K5y0b2hFMTQCINKAwAUBm4YzYJvI8fzsJM1sdoDWe8rAI; path=/; expires=Fri, 09-Jan-26 00:09:43 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:443 · cms.ellensonck.com
2026-01-01 22:00
HTTP/1.1 302 Found Date: Thu, 01 Jan 2026 22:00:17 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9b7549e62853834e-SIN content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=uwWZOZQgE0XRyGS6AyaeqDL.vgcA.UyRNGHRqtm62J4-1767304817-1.0.1.1-D9Utq_ToW0tfmLIlQKCzIPlW.4YbHDMHaapKWmDiiMQOOfn67LXu0I.3Q0uz.4cF5p7TnaDC1VoXVTG1J0DfbxGC7y2FGJf696FM_FxapZ0; path=/; expires=Thu, 01-Jan-26 22:30:17 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:443 · cms.ellensonck.com
2025-12-30 06:34
HTTP/1.1 302 Found Date: Tue, 30 Dec 2025 06:34:43 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9b5f835478beebf3-SJC content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=m5_I8kFt.jx3GRZ9XkkSdYePFxeztcZG.upPtX74KO4-1767076483-1.0.1.1-cNq16I3rydI5g9Ckj0hmczrXkUJUWABuCH2rmMVOljOsK_OTL4ANSbVzen2IVAaP9PjCTqqVvKwAZMl36OJjllaLRLUzSRICOSUgAiwI_f4; path=/; expires=Tue, 30-Dec-25 07:04:43 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:443 · cms.ellensonck.com
2025-12-22 14:37
HTTP/1.1 302 Found Date: Mon, 22 Dec 2025 14:37:38 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9b205bbe49dc6973-FRA content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=VsRiiKvrknaETQzVSrYrdTC7ZWGwA1_c9DwWH1R.wy4-1766414258-1.0.1.1-zCdKTL08zrc90fC2OR.WaiQR.jvzJh6rxdCHe2rleXIpMW2lHcNb5DCFfhRth.ediURJ.uEdF3uIKPQmEhQH1bHaA.KWS6cTWylmIWQK.VQ; path=/; expires=Mon, 22-Dec-25 15:07:38 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin
Open service 172.66.0.96:443 · cms.ellensonck.com
2025-12-20 13:13
HTTP/1.1 302 Found Date: Sat, 20 Dec 2025 13:13:51 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close CF-RAY: 9b0f66403a49d218-EWR content-security-policy: script-src 'self' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://cdn.directus.io;media-src 'self' https://cdn.directus.io;connect-src 'self' https://*;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' x-powered-by: Directus location: ./admin vary: Accept x-do-app-origin: 79b258f6-460f-4492-ba00-1ec959ca733f Cache-Control: private x-do-orig-status: 302 CF-Cache-Status: MISS Set-Cookie: __cf_bm=not1Xwn_2is_cb6KvwcmwdolFMBFRhYsMASwJhlf5xM-1766236431-1.0.1.1-zn6mttpPmnCc43rveJXUWQMfYFCB.72WrbLZvMxxm9nZkUWQOn9q3om_mvehzdLm9WFSNWvU3x4fFyY9YN3_oK2zG9lNaNT.cHor62_6.tA; path=/; expires=Sat, 20-Dec-25 13:43:51 GMT; domain=.cms.ellensonck.com; HttpOnly; Secure; SameSite=None Server: cloudflare alt-svc: h3=":443"; ma=86400 Found. Redirecting to ./admin