BunnyCDN-DE1-1331
tcp/443 tcp/80
BunnyCDN-DE1-1332
tcp/443 tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37523aa200d0a6624161759718577880d5bc844dc
GraphQL introspection enabled at /graphql Types: 387 (by kind: ENUM: 3, INPUT_OBJECT: 75, OBJECT: 299, SCALAR: 9, UNION: 1) Operations: - Query: Query | fields: block_button, block_button_aggregated, block_button_by_id, block_button_by_version, block_gallery - Mutation: Mutation | fields: create_help_feedback_item, create_help_feedback_items, create_inbox_item, create_inbox_items - Subscription: Subscription | fields: block_button_mutated, block_gallery_files_mutated, block_gallery_mutated, directus_files_mutated, directus_versions_mutated Directives: deprecated, include, skip (total: 3) Readable stores: 0
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3665c7c80d3faf04489daec11aaf82dadc48344bc
GraphQL introspection enabled at /graphql Types: 372 (by kind: ENUM: 3, INPUT_OBJECT: 72, OBJECT: 287, SCALAR: 9, UNION: 1) Operations: - Query: Query | fields: block_button, block_button_aggregated, block_button_by_id, block_button_by_version, block_gallery - Mutation: Mutation | fields: create_help_feedback_item, create_help_feedback_items, create_inbox_item, create_inbox_items - Subscription: Subscription | fields: block_button_mutated, block_gallery_files_mutated, block_gallery_mutated, directus_files_mutated, directus_versions_mutated Directives: deprecated, include, skip (total: 3) Readable stores: 0
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2026-01-09 02:56
HTTP/1.1 302 Found Date: Fri, 09 Jan 2026 02:56:24 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: SG Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 3c8ba5f5fd96a3f425ce8309f1ab0d91 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2026-01-02 00:05
HTTP/1.1 302 Found Date: Fri, 02 Jan 2026 00:05:59 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: DE Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 4105725309329e0a786f78c551f92280 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2025-12-30 09:55
HTTP/1.1 302 Found Date: Tue, 30 Dec 2025 09:55:39 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: DE Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 1afcd039066acd809e3d58e29bb612d0 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.157:80 · cms.ridiculousengineering.com
2025-12-29 21:14
HTTP/1.1 301 Moved Permanently Date: Mon, 29 Dec 2025 21:14:16 GMT Content-Type: text/html Content-Length: 166 Connection: close Server: BunnyCDN-DE1-1331 CDN-PullZone: 2479788 CDN-RequestCountryCode: SG Location: https://cms.ridiculousengineering.com/ CDN-RequestId: cd113b5b9b268f70224ef6bccf84820c CDN-RequestTime: 0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>openresty</center> </body> </html>
Open service 2400:52e0:1e00:2::1332:1:80 · cms.ridiculousengineering.com
2025-12-29 21:14
HTTP/1.1 301 Moved Permanently Date: Mon, 29 Dec 2025 21:14:17 GMT Content-Type: text/html Content-Length: 166 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: IN Location: https://cms.ridiculousengineering.com/ CDN-RequestId: 006acd862372a63ddb3fcdf5e7deb881 CDN-RequestTime: 0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>openresty</center> </body> </html>
Open service 2400:52e0:1e00:2::1332:1:443 · cms.ridiculousengineering.com
2025-12-29 21:14
HTTP/1.1 302 Found Date: Mon, 29 Dec 2025 21:14:15 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: NL Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 475e17b1a273bad00bb1d51fc204ccc7 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.157:443 · cms.ridiculousengineering.com
2025-12-29 21:14
HTTP/1.1 302 Found Date: Mon, 29 Dec 2025 21:14:15 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1331 CDN-PullZone: 2479788 CDN-RequestCountryCode: GB Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 1052273a5d6a33dd90901e8aa8192016 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2025-12-22 06:32
HTTP/1.1 302 Found Date: Mon, 22 Dec 2025 06:32:58 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: CA Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: cedc430ec87a90b99c0be7030053f4a1 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2025-12-20 18:25
HTTP/1.1 302 Found Date: Sat, 20 Dec 2025 18:25:58 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: CA Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 6ffa033bb3f2afea1932de8e80acf15c CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin
Open service 185.111.111.158:443 · cms.ridiculousengineering.com
2025-12-19 02:30
HTTP/1.1 302 Found Date: Fri, 19 Dec 2025 02:30:52 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close Server: BunnyCDN-DE1-1332 CDN-PullZone: 2479788 CDN-RequestCountryCode: DE Access-Control-Allow-Credentials: true Access-Control-Expose-Headers: Content-Range Cache-Control: no-transform, public, max-age=31536000 Expires: Sat, 21 Nov 2026 08:25:50 GMT Location: ./admin Content-Security-Policy: script-src 'self' plausible.io 'unsafe-eval' 'unsafe-inline' 'unsafe-eval';worker-src 'self' blob:;child-src 'self' blob:;img-src 'self' data: blob: https://raw.githubusercontent.com https://avatars.githubusercontent.com;media-src 'self';connect-src 'self' https://* wss://*;frame-src 'self' https://*.ridiculousengineering.com https://ridiculousengineering.com *.biteable.com biteable.com *.youtube.com www.youtube.com *.vimeo.com vimeo.com https://*.plausible.io https://plausible.io;default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline' X-Powered-By: Directus CDN-ProxyVer: 1.40 CDN-RequestPullSuccess: True CDN-RequestPullCode: 302 CDN-CachedAt: 11/21/2025 08:25:51 CDN-EdgeStorageId: 1330 CDN-RequestId: 6d28fe5f76e6c43a9aeb468c2c741251 CDN-Cache: HIT CDN-Status: 302 CDN-RequestTime: 0 Found. Redirecting to ./admin