Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4b73776d185020f294681fc1e0c4f80d898b6825d4
Public Swagger UI/API detected at path: /v3/api-docs - sample paths:
GET /calldqm
GET /db_geocoding_status/{id}
GET /secure/db_geocoding_status/{id}
GET /truncate
POST /aggregateSnowflake
POST /enhance
POST /enhanceSnowflake
POST /latlng
POST /secure/aggregateSnowflake
POST /secure/enhance
POST /secure/enhanceSnowflake
Open service 2.16.204.90:443 · geo-coding-eng-dev.choreograph.com
2026-01-09 10:58
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Fri, 09 Jan 2026 10:58:29 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 10:58:29 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=112 Server-Timing: origin; dur=63 Server-Timing: ak_p; desc="1767956309428_34610521_385723268_17530_9308_97_101_-";dur=1
Open service 2.16.183.6:80 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://geo-coding-eng-dev.choreograph.com/ Expires: Mon, 05 Jan 2026 13:55:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:32 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767621332450_34610630_1884114884_8_4553_97_0_-";dur=1
Open service 2a02:26f0:f700:11::210:10e2:80 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://geo-coding-eng-dev.choreograph.com/ Expires: Mon, 05 Jan 2026 13:55:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:32 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767621332673_388397410_1793148622_16_11599_153_0_-";dur=1
Open service 2.16.183.17:80 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://geo-coding-eng-dev.choreograph.com/ Expires: Mon, 05 Jan 2026 13:55:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:32 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767621332700_34610641_3205026372_7_3819_156_0_-";dur=1
Open service 2.16.183.17:443 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Mon, 05 Jan 2026 13:55:30 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:30 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=86 Server-Timing: origin; dur=78 Server-Timing: ak_p; desc="1767621330025_34610641_3205018863_16396_4006_161_166_-";dur=1
Open service 2a02:26f0:f700:11::210:10e6:80 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://geo-coding-eng-dev.choreograph.com/ Expires: Mon, 05 Jan 2026 13:55:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:32 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767621332673_388397414_1955864921_14_10378_144_0_-";dur=1
Open service 2a02:26f0:f700:11::210:10e6:443 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Mon, 05 Jan 2026 13:55:30 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:30 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=297 Server-Timing: origin; dur=63 Server-Timing: ak_p; desc="1767621329734_388397414_1955860474_36049_11427_26_36_-";dur=1
Open service 2a02:26f0:f700:11::210:10e2:443 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Mon, 05 Jan 2026 13:55:29 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:29 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=96 Server-Timing: origin; dur=64 Server-Timing: ak_p; desc="1767621329639_388397410_1793144034_16020_8314_25_37_-";dur=1
Open service 2.16.183.6:443 · geo-coding-eng-dev.choreograph.com
2026-01-05 13:55
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Mon, 05 Jan 2026 13:55:29 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 05 Jan 2026 13:55:29 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=84 Server-Timing: origin; dur=63 Server-Timing: ak_p; desc="1767621329468_34610630_1884094494_14645_4799_11_14_-";dur=1
Open service 2.16.204.90:443 · geo-coding-eng-dev.choreograph.com
2026-01-01 19:48
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Thu, 01 Jan 2026 19:48:07 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 01 Jan 2026 19:48:07 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=83 Server-Timing: origin; dur=63 Server-Timing: ak_p; desc="1767296887036_34610521_3250927060_14674_10378_20_61_-";dur=1
Open service 2.16.204.90:443 · geo-coding-eng-dev.choreograph.com
2025-12-22 20:08
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Mon, 22 Dec 2025 20:08:58 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 22 Dec 2025 20:08:58 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=448 Server-Timing: origin; dur=65 Server-Timing: ak_p; desc="1766434137395_34610522_1174882670_51362_122079_87_420_-";dur=1
Open service 2.16.204.90:443 · geo-coding-eng-dev.choreograph.com
2025-12-21 04:09
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Sun, 21 Dec 2025 04:09:37 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sun, 21 Dec 2025 04:09:37 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=263 Server-Timing: origin; dur=63 Server-Timing: ak_p; desc="1766290176595_34610522_907354546_32607_26362_82_427_-";dur=1
Open service 2.16.204.90:443 · geo-coding-eng-dev.choreograph.com
2025-12-19 04:41
HTTP/1.1 403 Forbidden X-Content-Type-Options: nosniff X-XSS-Protection: 0 X-Frame-Options: DENY Content-Length: 0 Expires: Fri, 19 Dec 2025 04:41:38 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 19 Dec 2025 04:41:38 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=403 Server-Timing: origin; dur=81 Server-Timing: ak_p; desc="1766119297725_34610522_524885050_48478_11678_8_228_-";dur=1