cloudflare
tcp/443 tcp/80 tcp/8443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd18553ecf76aaad6bb3c768c16444ffe178144b55804f30bf7
Public Swagger UI/API detected at path: /swagger-ui.html - sample paths:
DELETE /s3/{fileName}
GET /DolMarketPay/
GET /DolMarketPay/inOrderCallback
GET /qishituanAliPay/v2/inOrderCallback
GET /qishituanAliPay/v2/outOrderCallback
GET /qishituanPay/v2/inOrderCallback
GET /qishituanPay/v2/outOrderCallback
GET /qstpay/inOrderCallBack
GET /qstpay/outOrderCallBack
GET /s3/
GET /s3/file/{fileName}
GET /s3/trade-file/{tradeNo}
GET /user/changeLock
GET /user/editDealer
GET /user/kyc
GET /user/refresh
GET /user/sendCode
POST /account/activate
POST /account/del
POST /account/edit
POST /account/list
POST /alipay/notifyIgnore
POST /alipay/notifyList
POST /alipay/notifyMapping
POST /balance/deposit
POST /balance/info
POST /balance/orderFlow
POST /balance/witdepList
POST /balance/withdraw
POST /dealer/app/googleVerify
POST /dealer/app/login
POST /dealer/app/ping
POST /dealer/app/submitAlipay
POST /joypay/inOrderCallBack
POST /joypay/outOrderCallBack
POST /message/messageList
POST /message/sendMessage
POST /okpay/inOrderCallBack
POST /okpay/outOrderCallBack
POST /order/appeal
POST /order/appeal/reply
POST /order/appealList
POST /order/appealReplyList
POST /order/cancel
POST /order/confirm
POST /order/findOrder
POST /order/orderList
POST /order/out/pic
POST /order/resume
POST /order/transfer
POST /order/warningCheck
POST /s3/pay/upload
POST /s3/upload
POST /user/bindGoogleSecurity
POST /user/changePwd
POST /user/getOssToken
POST /user/googleVerify
POST /user/initGoogleSecurity
POST /user/inviteFlow
POST /user/inviteList
POST /user/login
POST /user/optReceive
POST /user/profile
POST /user/queryDealer
POST /user/settingInfo
Open service 104.26.10.58:443 · deaapi.fx.dvbfservice.com
2026-01-23 01:36
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 01:36:34 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=478
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=gIodonXmdp9%2BfzQoPOaXEtOAfeQbf5Fk9dy7zX6wTmrVuPBqUdCGv3WDd2e2Q%2FzkSAnTNbJ4GszEQntYrCSK2aQDTczimAG2gKoit98tXe3dMjKezjRyXY8%3D"}]}
CF-RAY: 9c238f943b39656b-AMS
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 2606:4700:20::ac43:45ca:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=215
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=genWtmjA0LVyv3em9rdeqXUAl5odPklJd9dBZuhH%2FwSwoTqrKd9Rjo1Aq3Qox54DoqabBT4ka%2BqdZXQfzvWCmtdpjY4Z%2B5XhHvjuqGRfwzoBFerPm4Z5Kxa2cogvNQ0r3bK%2BfWk%3D"}]}
CF-RAY: 9bc2ffdd0d75ad01-SJC
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 2606:4700:20::ac43:45ca:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=FoIfG1hvCl6q5o%2B01mPuPMF8tiwzAKoDFAdBrrIspQik1bHDjeaRH3op51PTL%2B2Qf0ug3L61wwT2X11SBigqUayk3CoxeP68IKfyS%2Ftf91fiaSj4z23QyK2ab14Hyp7CJ4Nlf2U%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=8,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb5f086f7a-BLR
alt-svc: h3=":443"; ma=86400
Open service 172.67.69.202:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19313,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe19f069aa4-EWR alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 172.67.69.202:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:15 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=489
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=bk%2Fj83x%2BBcdh2CSObEar1ckvhFihXl3gWclNxFqylh%2BYNldEJqeGKUAratLa%2B8P0h9jvcxEcMh5ttlkOSHyaeHSMzl2Uqw3ijfrOBvV5MPElBhnhY8qiZ1A%3D"}]}
CF-RAY: 9bc2ffdede2f1e5b-FRA
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 2606:4700:20::681a:b3a:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19311,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe19818c3ab-EWR alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 172.67.69.202:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=I9CN%2Fy5mnb%2BZ2OaQMe8VrIwWHr3mDMcHKp%2BrgPECVhIkvhLygOx%2Ftk0iIppK6PdTmW%2BVZWd01L0wA6RyRjsEs9wRZ1Z1QaiV0abpYz0bnN%2BvGsnOYruI9kU%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=11,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb6cb54241-EWR
alt-svc: h3=":443"; ma=86400
Open service 2606:4700:20::681a:a3a:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19347,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe18a5339d8-YYZ alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 104.26.11.58:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=163
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=t2iIv84PyckQ0u4bxPidCJQx%2BWeJ0j0rjl6t4xLahiDsBs4URZFHLKKq6VpIfV7LnwgZpfhx52wlpPtnIa94SCHeCQrflUSDy3WAgu2nJXe1uRuF%2FIUDF9g%3D"}]}
CF-RAY: 9bc2ffdd596039f5-YYZ
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 104.26.10.58:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=318
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=SxLjQUFXX5BA%2BdiGMkihqXdTSCnT%2BABYe9HpkRm5LjIMEkPPaj%2FUjpEpfTYLsG2SAZZL3obNtesfopAYYbvUvcWG1Z5zbOrHmtgsNlYqTLwaCWNijM5L"}]}
CF-RAY: 9bc2ffdd38d9a1f9-YYZ
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 2606:4700:20::681a:a3a:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=160
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=vojprl%2BFtMvw2baaY7h6D1rGkOKQ2CJZ7zx5Df1ulHdYARrHPbH4QtTColPuXck1e6g9Sa5YaEmkpN7uMRfRQnB2X2SkOtk9qADBdBcezGXHpJX4fHhHTBHHfXf1G70reYP0hjU%3D"}]}
CF-RAY: 9bc2ffdd499fdde5-YYZ
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 2606:4700:20::681a:b3a:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=fysauAykpLlMXJWr5cznB8OrF2M5cIxdH1MZA3fuWwDPkGKqvVvfNOrPK7NSZJgBETu2UrjXSbMO38PwJOkYu9rkswbIyDIESpRqhrdh72F5p86YOXRiRrp67s5XXRAY4O8cHfg%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=10,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb5f310be4-AMS
alt-svc: h3=":443"; ma=86400
Open service 2606:4700:20::681a:b3a:443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 17
Connection: close
Server: cloudflare
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Speculation-Rules: "/cdn-cgi/speculation"
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=246
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=emMB%2BG33G7wRF5Pge%2F2OpOYgI33IJbEj1VsD8ShKVFZ3iEMmok4JY%2FAaRBrD7jyCyAY1JB2oR9kBDji%2BCaqY7UIxA9nZcC2iWOBCCM7ZGCjN2zkPpDf2%2BVVqkds82NDTyF%2BM2to%3D"}]}
CF-RAY: 9bc2ffde2c801d86-FRA
alt-svc: h3=":443"; ma=86400
Welcome to BSOTC!
Open service 104.26.11.58:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=wJgj9hgcD6yEdRS7kCp4f1kqBLgmGbqAUhxEicd436AYu3Uq1rkcsgMoxn2sp5Ktiuj9t1CajAjLbw8gww9isZ9AS9QRgxPdiyawYW8unIIkITj4UlFWaH0%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=8,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb18c15d56-AMS
alt-svc: h3=":443"; ma=86400
Open service 104.26.10.58:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=7CX2hPfC2J3W%2B%2BKEGoWRouaCZ9LnYlDADjwLyCLNWK19mYRo4xlZEvXyO2l3PL5uTVSH4ZvWI4O6oeyEIDKT%2FPr6D92yn7nLxaYHq4UrTSDrgDz%2BbXK%2FnOk%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=9,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb0af07aea-EWR
alt-svc: h3=":443"; ma=86400
Open service 2606:4700:20::ac43:45ca:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19330,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe14a6c66e0-AMS alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 2606:4700:20::681a:a3a:80 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 301 Moved Permanently
Date: Sun, 11 Jan 2026 08:21:14 GMT
Content-Length: 0
Connection: close
Location: https://deaapi.fx.dvbfservice.com/
Speculation-Rules: "/cdn-cgi/speculation"
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=BRmf7qDcWAiZJLYdd3n37TM2Yv1nQazRLip%2B0m3%2BqqWFanBgN2GPp4djiGFpAnSIstnjIBWehJy9%2BVDtnSgok6uLQOdpIEk0%2BfMM%2B3tn2xt%2FAq8VGNCqLjPDz1uLg%2FNmiXrGsWc%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=13,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bc2ffdb1bb3381c-FRA
alt-svc: h3=":443"; ma=86400
Open service 104.26.10.58:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19496,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe12c99bc8a-AMS alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 104.26.11.58:8443 · deaapi.fx.dvbfservice.com
2026-01-11 08:21
HTTP/1.1 522 <none> Date: Sun, 11 Jan 2026 08:21:34 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=19498,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bc2ffe119ba651e-LHR alt-svc: h3=":8443"; ma=86400 error code: 522