Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43a81ce88f562b774ca7894bf46905fba96905fba9
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /coupons GET /coupons/hascoupon GET /coupons/verify GET /language
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d63a747c263a747c263a747c263a747c2
Found 1 files trough .DS_Store spidering: /application
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43a81ce88f562b774ca7894bf46905fba96905fba9
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /coupons GET /coupons/hascoupon GET /coupons/verify GET /language
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d63a747c263a747c263a747c263a747c2
Found 1 files trough .DS_Store spidering: /application
Open service 207.120.36.166:443 · www.guidedintobliss.com
2025-12-30 06:08
HTTP/1.1 403 Forbidden Date: Tue, 30 Dec 2025 06:08:36 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 10410170 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 479046b1c0be73811ff4d811464fd8e3 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 45.154.183.183:443 · guidedintobliss.com
2025-12-30 05:37
HTTP/1.1 403 Forbidden Date: Tue, 30 Dec 2025 05:37:14 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 46019741 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 00261e7f39cf90c10ad936aad267ef93 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.36.166:443 · www.guidedintobliss.com
2025-12-22 06:43
HTTP/1.1 403 Forbidden Date: Mon, 22 Dec 2025 06:43:58 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 5666547 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 4787903f7ae498c66fbe68f0849894ab Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 45.154.183.183:443 · guidedintobliss.com
2025-12-22 06:26
HTTP/1.1 403 Forbidden Date: Mon, 22 Dec 2025 06:26:09 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 4960119 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 753d224fed90c2d7f317bae878c4d6c0 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.36.166:443 · www.guidedintobliss.com
2025-12-20 07:17
HTTP/1.1 403 Forbidden Date: Sat, 20 Dec 2025 07:17:29 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 2570751 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 40ca187dfeb34e64c8b3f80cbad488cd Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 45.154.183.183:443 · guidedintobliss.com
2025-12-20 06:59
HTTP/1.1 403 Forbidden Date: Sat, 20 Dec 2025 06:59:05 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 13804944 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 24a15393f127641df74eb2ff730d89b9 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>