nginx
tcp/443 tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa346486203e3138c01c7028fbabe09accc761dec4e
GraphQL introspection enabled at /graphql Types: 1149 (by kind: ENUM: 88, INPUT_OBJECT: 242, INTERFACE: 189, OBJECT: 624, SCALAR: 5, UNION: 1) Operations: - Query: RootQuery | fields: allPaColor, allPaMaterial, allPaSeatsCount, allSettings, allowedCountries - Mutation: RootMutation | fields: addCartItems, addFee, addToCart, applyCoupon, checkout Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2026-01-08 20:16
HTTP/1.1 403 Forbidden
Server: nginx
Date: Thu, 08 Jan 2026 20:16:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding
Vary: Cookie
Expires: Wed, 11 Jan 1984 05:00:00 GMT
Cache-Control: no-cache, must-revalidate, max-age=0, no-store, private
X-ac: 3.ams _dca MISS
Alt-Svc: h3=":443"; ma=86400
Server-Timing: a8c-cdn, dc;desc=ams, cache;desc=MISS;dur=101.0
Page title: Error: Active domain connection for this domain not found
<!DOCTYPE html>
<html dir='ltr'>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Error: Active domain connection for this domain not found</title>
<style type="text/css">
html {
background: #f1f1f1;
}
body {
background: #fff;
border: 1px solid #ccd0d4;
color: #444;
font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, Oxygen-Sans, Ubuntu, Cantarell, "Helvetica Neue", sans-serif;
margin: 2em auto;
padding: 1em 2em;
max-width: 700px;
-webkit-box-shadow: 0 1px 1px rgba(0, 0, 0, .04);
box-shadow: 0 1px 1px rgba(0, 0, 0, .04);
}
h1 {
border-bottom: 1px solid #dadada;
clear: both;
color: #666;
font-size: 24px;
margin: 30px 0 0 0;
padding: 0;
padding-bottom: 7px;
}
#error-page {
margin-top: 50px;
}
#error-page p,
#error-page .wp-die-message {
font-size: 14px;
line-height: 1.5;
margin: 25px 0 20px;
}
#error-page code {
font-family: Consolas, Monaco, monospace;
}
ul li {
margin-bottom: 10px;
font-size: 14px ;
}
a {
color: #2271b1;
}
a:hover,
a:active {
color: #135e96;
}
a:focus {
color: #043959;
box-shadow: 0 0 0 2px #2271b1;
outline: 2px solid transparent;
}
.button {
background: #f3f5f6;
border: 1px solid #016087;
color: #016087;
display: inline-block;
text-decoration: none;
font-size: 13px;
line-height: 2;
height: 28px;
margin: 0;
padding: 0 10px 1px;
cursor: pointer;
-webkit-border-radius: 3px;
-webkit-appearance: none;
border-radius: 3px;
white-space: nowrap;
-webkit-box-sizing: border-box;
-moz-box-sizing: border-box;
box-sizing: border-box;
vertical-align: top;
}
.button.button-large {
line-height: 2.30769231;
min-height: 32px;
padding: 0 12px;
}
.button:hover,
.button:focus {
background: #f1f1f1;
}
.button:focus {
background: #f3f5f6;
border-color: #007cba;
-webkit-box-shadow: 0 0 0 1px #007cba;
box-shadow: 0 0 0 1px #007cba;
color: #016087;
outline: 2px solid transparent;
outline-offset: 0;
}
.button:active {
background: #f3f5f6;
border-color: #7e8993;
-webkit-box-shadow: none;
box-shadow: none;
}
</style>
</head>
<body id="error-page">
<div class="wp-die-message">Something unexpected happened while accessing this website. It looks like it doesn't have an active <a href="https://wordpress.com/support/domains/connect-existing-domain/">domain connection</a> upgrade to link the requested domain name to the WordPress.com site.<br><br>If this is your domain name and it has recently stopped working, it's possible that your plan or domain may have expired. Please <a href="https://wordpress.com/wp-login.php">log in</a> to your WordPress.com account and review the status of your plan and domain. <img src='https://pixel.wp.com/b.gif?x_graceful=missingdomain&v=wpcom-no-pv&rand=3298034' alt='' /></div></body>
</html>
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2026-01-08 20:16
HTTP/1.1 403 Forbidden
Server: nginx
Date: Thu, 08 Jan 2026 20:16:20 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding
Vary: Cookie
Expires: Wed, 11 Jan 1984 05:00:00 GMT
Cache-Control: no-cache, must-revalidate, max-age=0, no-store, private
X-ac: 22.jfk _dfw MISS
Alt-Svc: h3=":443"; ma=86400
Server-Timing: a8c-cdn, dc;desc=jfk, cache;desc=MISS;dur=48.0
Page title: Error: Active domain connection for this domain not found
<!DOCTYPE html>
<html dir='ltr'>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Error: Active domain connection for this domain not found</title>
<style type="text/css">
html {
background: #f1f1f1;
}
body {
background: #fff;
border: 1px solid #ccd0d4;
color: #444;
font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, Oxygen-Sans, Ubuntu, Cantarell, "Helvetica Neue", sans-serif;
margin: 2em auto;
padding: 1em 2em;
max-width: 700px;
-webkit-box-shadow: 0 1px 1px rgba(0, 0, 0, .04);
box-shadow: 0 1px 1px rgba(0, 0, 0, .04);
}
h1 {
border-bottom: 1px solid #dadada;
clear: both;
color: #666;
font-size: 24px;
margin: 30px 0 0 0;
padding: 0;
padding-bottom: 7px;
}
#error-page {
margin-top: 50px;
}
#error-page p,
#error-page .wp-die-message {
font-size: 14px;
line-height: 1.5;
margin: 25px 0 20px;
}
#error-page code {
font-family: Consolas, Monaco, monospace;
}
ul li {
margin-bottom: 10px;
font-size: 14px ;
}
a {
color: #2271b1;
}
a:hover,
a:active {
color: #135e96;
}
a:focus {
color: #043959;
box-shadow: 0 0 0 2px #2271b1;
outline: 2px solid transparent;
}
.button {
background: #f3f5f6;
border: 1px solid #016087;
color: #016087;
display: inline-block;
text-decoration: none;
font-size: 13px;
line-height: 2;
height: 28px;
margin: 0;
padding: 0 10px 1px;
cursor: pointer;
-webkit-border-radius: 3px;
-webkit-appearance: none;
border-radius: 3px;
white-space: nowrap;
-webkit-box-sizing: border-box;
-moz-box-sizing: border-box;
box-sizing: border-box;
vertical-align: top;
}
.button.button-large {
line-height: 2.30769231;
min-height: 32px;
padding: 0 12px;
}
.button:hover,
.button:focus {
background: #f1f1f1;
}
.button:focus {
background: #f3f5f6;
border-color: #007cba;
-webkit-box-shadow: 0 0 0 1px #007cba;
box-shadow: 0 0 0 1px #007cba;
color: #016087;
outline: 2px solid transparent;
outline-offset: 0;
}
.button:active {
background: #f3f5f6;
border-color: #7e8993;
-webkit-box-shadow: none;
box-shadow: none;
}
</style>
</head>
<body id="error-page">
<div class="wp-die-message">Something unexpected happened while accessing this website. It looks like it doesn't have an active <a href="https://wordpress.com/support/domains/connect-existing-domain/">domain connection</a> upgrade to link the requested domain name to the WordPress.com site.<br><br>If this is your domain name and it has recently stopped working, it's possible that your plan or domain may have expired. Please <a href="https://wordpress.com/wp-login.php">log in</a> to your WordPress.com account and review the status of your plan and domain. <img src='https://pixel.wp.com/b.gif?x_graceful=missingdomain&v=wpcom-no-pv&rand=6857630' alt='' /></div></body>
</html>
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2026-01-01 20:43
HTTP/1.1 301 Moved Permanently Server: nginx Date: Thu, 01 Jan 2026 20:43:59 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 33.hhn _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=hhn, cache;desc=MISS;dur=285.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2026-01-01 20:43
HTTP/1.1 301 Moved Permanently Server: nginx Date: Thu, 01 Jan 2026 20:43:59 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 33.hhn _dfw MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=hhn, cache;desc=MISS;dur=128.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-30 05:01
HTTP/1.1 301 Moved Permanently Server: nginx Date: Tue, 30 Dec 2025 05:01:22 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 33.hhn _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=hhn, cache;desc=MISS;dur=269.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-30 05:01
HTTP/1.1 301 Moved Permanently Server: nginx Date: Tue, 30 Dec 2025 05:01:21 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 3.ams _dfw MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=ams, cache;desc=MISS;dur=131.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-22 05:54
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 22 Dec 2025 05:54:42 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 2.lhr _dfw MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=lhr, cache;desc=MISS;dur=113.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-22 05:54
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 22 Dec 2025 05:54:42 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 3.ams _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=ams, cache;desc=MISS;dur=101.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-20 06:25
HTTP/1.1 301 Moved Permanently Server: nginx Date: Sat, 20 Dec 2025 06:25:41 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 33.hhn _dfw MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=hhn, cache;desc=MISS;dur=127.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-20 06:25
HTTP/1.1 301 Moved Permanently Server: nginx Date: Sat, 20 Dec 2025 06:25:40 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 2.yyz _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=yyz, cache;desc=MISS;dur=20.0
Open service 192.0.78.211:443 · ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:55 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 22.jfk _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=jfk, cache;desc=MISS;dur=12.0
Open service 192.0.78.211:443 · www.ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:54 GMT Content-Type: text/html Content-Length: 162 Connection: close Strict-Transport-Security: max-age=31536000 Location: https://ecom.thecomfortsofas.com/ X-ac: 32.sin _bur MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=sin, cache;desc=MISS;dur=189.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.129:80 · ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:54 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://ecom.thecomfortsofas.com/ Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=sin, cache;desc=BYPASS;dur=0.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.211:80 · www.ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:54 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://www.ecom.thecomfortsofas.com/ Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=lhr, cache;desc=BYPASS;dur=0.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.129:443 · www.ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:53 GMT Content-Type: text/html Content-Length: 162 Connection: close Strict-Transport-Security: max-age=31536000 Location: https://ecom.thecomfortsofas.com/ X-ac: 1.yyz _dca MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=yyz, cache;desc=MISS;dur=16.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.211:80 · ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:53 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://ecom.thecomfortsofas.com/ Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=lhr, cache;desc=BYPASS;dur=0.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.129:80 · www.ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:53 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://www.ecom.thecomfortsofas.com/ Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=yyz, cache;desc=BYPASS;dur=0.0 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.0.78.129:443 · ecom.thecomfortsofas.com
2025-12-19 00:13
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 19 Dec 2025 00:13:54 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Strict-Transport-Security: max-age=31536000 Vary: Cookie Location: https://fearless-ashik8b4070f60d.wordpress.com/ X-ac: 33.hhn _dfw MISS Alt-Svc: h3=":443"; ma=86400 Server-Timing: a8c-cdn, dc;desc=hhn, cache;desc=MISS;dur=372.0