.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c1a5d9b0f1a5d9b0f796d4cd68e335653e3e4e449e3e4e449
Found 3 files trough .DS_Store spidering: /.claude /.git /.github
Open service 20.101.2.157:443 · demo.summontechnologies.com
2026-01-08 19:44
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Thu, 08 Jan 2026 19:45:27 GMT Cache-Control: no-store Location: /login.html X-Content-Type-Options: nosniff X-Frame-Options: DENY Content-Security-Policy: default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.tailwindcss.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; media-src 'self' blob:; connect-src 'self' https://*.cognitiveservices.azure.com https://*.api.cognitive.microsoft.com https://detect.roboflow.com https://*.documents.azure.com https://*.database.windows.net
Open service 20.101.2.157:443 · demo.summontechnologies.com
2026-01-01 20:15
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Thu, 01 Jan 2026 20:15:36 GMT Cache-Control: no-store Location: /login.html X-Content-Type-Options: nosniff X-Frame-Options: DENY Content-Security-Policy: default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.tailwindcss.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; media-src 'self' blob:; connect-src 'self' https://*.cognitiveservices.azure.com https://*.api.cognitive.microsoft.com https://detect.roboflow.com https://*.documents.azure.com https://*.database.windows.net
Open service 20.101.2.157:443 · demo.summontechnologies.com
2025-12-30 04:23
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Tue, 30 Dec 2025 04:23:36 GMT Cache-Control: no-store Location: /login.html X-Content-Type-Options: nosniff X-Frame-Options: DENY Content-Security-Policy: default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.tailwindcss.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; media-src 'self' blob:; connect-src 'self' https://*.cognitiveservices.azure.com https://*.api.cognitive.microsoft.com https://detect.roboflow.com https://*.documents.azure.com https://*.database.windows.net
Open service 20.101.2.157:443 · demo.summontechnologies.com
2025-12-22 05:10
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Mon, 22 Dec 2025 05:10:18 GMT Cache-Control: no-store Location: /login.html X-Content-Type-Options: nosniff X-Frame-Options: DENY Content-Security-Policy: default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.tailwindcss.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; media-src 'self' blob:; connect-src 'self' https://*.cognitiveservices.azure.com https://*.api.cognitive.microsoft.com https://detect.roboflow.com https://*.documents.azure.com https://*.database.windows.net
Open service 20.101.2.157:443 · demo.summontechnologies.com
2025-12-20 05:10
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Sat, 20 Dec 2025 05:10:26 GMT Cache-Control: no-store Location: /login.html X-Content-Type-Options: nosniff X-Frame-Options: DENY Content-Security-Policy: default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.tailwindcss.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; media-src 'self' blob:; connect-src 'self' https://*.cognitiveservices.azure.com https://*.api.cognitive.microsoft.com https://detect.roboflow.com https://*.documents.azure.com https://*.database.windows.net