Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549777dba0a51a31eb272b0a6bdaf5b154a2fa6d952
Public Swagger UI/API detected at path: /swagger/index.html - sample paths: POST /api/HarvesterIntegration/BatchIntake POST /api/HarvesterIntegration/BoxData POST /api/HarvesterIntegration/ProcessedProducts POST /api/HarvesterIntegration/Products POST /api/HarvesterIntegration/StatusData POST /api/HarvesterIntegration/Supplier
Open service 20.119.0.36:443 · dev.harv.apis.baader.softoo.co
2026-01-23 14:32
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 14:33:07 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=0f0eac9025c535aa027b3d037b337eec6b27b4947463810f5ef9458235c67a5d;Path=/;HttpOnly;Secure;Domain=dev.harv.apis.baader.softoo.co Set-Cookie: ARRAffinitySameSite=0f0eac9025c535aa027b3d037b337eec6b27b4947463810f5ef9458235c67a5d;Path=/;HttpOnly;SameSite=None;Secure;Domain=dev.harv.apis.baader.softoo.co Request-Context: appId=cid-v1:a996adf5-57fd-4e97-bbee-b902aa913d3f X-Powered-By: ASP.NET
Open service 20.119.0.36:80 · dev.harv.apis.baader.softoo.co
2026-01-12 05:08
HTTP/1.1 301 Moved Permanently Content-Length: 0 Connection: close Date: Mon, 12 Jan 2026 05:09:03 GMT Location: https://dev.harv.apis.baader.softoo.co/
Open service 20.119.0.36:443 · dev.harv.apis.baader.softoo.co
2026-01-12 05:08
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Mon, 12 Jan 2026 05:09:03 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=e2c634607e44851e81f065fce3b73507fbe50f2156fd569962cb7167b11f16b9;Path=/;HttpOnly;Secure;Domain=dev.harv.apis.baader.softoo.co Set-Cookie: ARRAffinitySameSite=e2c634607e44851e81f065fce3b73507fbe50f2156fd569962cb7167b11f16b9;Path=/;HttpOnly;SameSite=None;Secure;Domain=dev.harv.apis.baader.softoo.co Request-Context: appId=cid-v1:a996adf5-57fd-4e97-bbee-b902aa913d3f X-Powered-By: ASP.NET