Heroku
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c1a5d9b0f1a5d9b0ff409caf18ae9e1e4c6fde6d7c6fde6d7
Found 3 files trough .DS_Store spidering: /assets /data /fonts
Open service 54.162.128.250:443 · flit.school
2025-12-23 01:28
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"19244dc25cc054b965fbec146f9bb647"
Link: </assets/application-de40fba10c17e3756d43492c06e9e7945a2174f137121dea867102ea6ffe5448.css>; rel=preload; as=style; nopush,<//www.google.com/jsapi>; rel=preload; as=script; nopush,</assets/chartkick-8eb76e6cbdb540d495739fce84049fd038e59e7fd55c9e08e47b0b5a74b62db4.js>; rel=preload; as=script; nopush,</assets/flit-b66cd644ce5018f9bc8aaf5155fbc940bdec9da9a5aed49d3d63c1e679ea6941.css>; rel=preload; as=style; nopush
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=nre1gTS1iPaYw6VizRhNN%2FbHX4vcHQ4ehD96MNv%2Bld0%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766453313"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=nre1gTS1iPaYw6VizRhNN%2FbHX4vcHQ4ehD96MNv%2Bld0%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766453313"
Server: Heroku
Set-Cookie: _flit_session=YeCXgDl4xZ%2BVaglK3nf0jVWcXxjyO6V%2FojWLZSpg3TWph%2F07PFpadb3Gm%2F5B1S0eETm6gUltjTif3N4WLGO8%2Fc9HQzI9tKAt3ccwAuV1iVS6pM3UL73NFw33ByaMacs2srmw5qpDZlXkQP4%2BS2kqF10rlgfMJsPH7Dn1N8tO3JxbRKKNIZnKUA4547aZ0u8AueauaZl0Kl9Ye9POvqdMhXbZnMd9CWy%2F5i%2BvTRGHk05jnGvhDAxJ5LJMF6iXyyIdjEtpPluVVVHbVelHDw3XUt2FkQtW--cH8nKEoxWSmhZFXL--fNENt3JOSkxOUKxz33vVAg%3D%3D; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 9e51f8a0-3a71-53c0-5eca-a8816075bbe3
X-Runtime: 0.004106
X-Xss-Protection: 0
Date: Tue, 23 Dec 2025 01:28:33 GMT
Connection: close
Transfer-Encoding: chunked
Page title: Flit - Your School's Partner in Practical Financial Education for K-12 Students
<!DOCTYPE html>
<html>
<head>
<title>Flit - Your School's Partner in Practical Financial Education for K-12 Students</title>
<meta name="viewport" content="width=device-width,initial-scale=1">
<meta name="csrf-param" content="authenticity_token" />
<meta name="csrf-token" content="ChZR_sMVBna2dZhbM_0tqavw6W1YN3Dc0MyxqOQx-Iq4D9a959u0tSFFC3scMiveR3CJClSBIU87J13etue11w" />
<link rel="stylesheet" type="text/css" href="//fonts.googleapis.com/css?family=Varela+Round" />
<link rel="stylesheet" href="/assets/application-de40fba10c17e3756d43492c06e9e7945a2174f137121dea867102ea6ffe5448.css" data-turbo-track="reload" />
<script src="/assets/application-76bba335de36784e87ac08ccfec1577853905aa7519f45afa7fac881ea596ba5.js" data-turbo-track="reload" defer="defer"></script>
<script src="//www.google.com/jsapi"></script>
<script src="/assets/chartkick-8eb76e6cbdb540d495739fce84049fd038e59e7fd55c9e08e47b0b5a74b62db4.js"></script>
<link rel="stylesheet" href="/assets/flit-b66cd644ce5018f9bc8aaf5155fbc940bdec9da9a5aed49d3d63c1e679ea6941.css" data-turbo-track="reload" />
</head>
<body>
<!-- Navigation-->
<nav class="navbar navbar-expand-lg shadow-sm flit-success" id="mainNav">
<div class="container px-5">
<a class="navbar-brand fw-bold" href="/">
<!-- <i class="bi-currency-exchange"></i> -->
<span class="px-1">F</span>|<span class="px-1">lit</span>
</a>
<button class="navbar-toggler text-white" type="button" data-bs-toggle="collapse" data-bs-target="#navbarResponsive" aria-controls="navbarResponsive" aria-expanded="false" aria-label="Toggle navigation">
Menu
<i class="bi-list"></i>
</button>
<div class="collapse navbar-collapse" id="navbarResponsive">
<ul class="navbar-nav ms-auto me-4 my-3 my-lg-0">
<!-- <li class="nav-item"><a class="nav-link me-lg-3 text-white" href="">Features</a></li>
<li class="nav-item"><a class="nav-link me-lg-3 text-white" href="">Pricing</a></li> -->
</ul>
<button class="btn btn-primary rounded-pill px-3 mb-2 mb-lg-0" data-bs-toggle="modal" data-bs-target="#signinModal">
<span class="d-flex align-items-center">
<i class="bi-person-workspace me-2"></i>
<span class="small">Sign In</span>
</span>
</button>
</div>
</div>
</nav>
<main style="padding-bottom: 2em;">
<div class="container mt-4">
<div class="container px-5" style="padding-top: 4em;">
<div class="row gx-5 align-items-center mt-2 mb-2">
<div class="col-lg-6">
<!-- Mashead text and app badges-->
<div class="mb-5 mb-lg-0 text-center text-lg-start">
<h1 class="lh-1 mb-3">
<img class="img-fluid" src="/assets/flit-logo-afa4b229ad0ff7c070ff2a08935d40f4b185d843710252471942871a27345f81.png" /><br/>
Teaching financial literacy one transaction at a time.
</h1>
</div>
</div>
<div class="col-lg-6 text-center">
<!-- Masthead device mockup feature-->
<iframe
width="560"
height="315"
src="https://www.youtube.com/embed/9IYl7h8gG1o?rel=0"
title="YouTube video player"
frameborder="0"
allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" allowfullscreen
>
</iframe>
<button class="btn btn-lg btn-primary" data-bs-toggle="modal" data-bs-target="#demorequestModal">
Get Flit in your School!
</button>
</div>
</div>
</div>
<div class="container mt-5">
<div class="row">
<div class="col-md-6">
<img class="img-fluid" src="/assets/hero-2c485eb8d21d8b0fbb670d558711747f3254e7b73db6ec3fc00d9d75a9d357df.j