cloudflare
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Open service 172.66.47.98:443 · helloking.pages.dev
2026-01-08 20:11
HTTP/1.1 403 Forbidden
Date: Thu, 08 Jan 2026 20:11:52 GMT
Content-Type: text/plain;charset=UTF-8
Content-Length: 39
Connection: close
Vary: accept-encoding
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ReZAitb16L6HShjWmssXJTTVq90VJp6hUI06%2FP%2FHLlZIqydaoA3uRTcnv%2F29Ap0WLDnMEceNq2UP%2BMUO3kJtUpvWFCnRn9gV8clP1ANfSfqIGKQ%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9bae58ae3f16f4bf-EWR
alt-svc: h3=":443"; ma=86400
Redirects to weibo.com are not allowed.
Open service 172.66.47.98:443 · helloking.pages.dev
2026-01-01 20:40
HTTP/1.1 200 OK
Date: Thu, 01 Jan 2026 20:40:12 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-Ray: 9b74d494ba9f6d97-SIN
CF-Cache-Status: DYNAMIC
Access-Control-Allow-Origin: https://news.zhibo8.cc
Last-Modified: Thu, 01 Jan 2026 20:39:01 GMT
Server: cloudflare
Vary: Accept-Encoding
Access-Control-Allow-Headers: X-Requested-With
Access-Control-Allow-Methods: GET,POST,OPTIONS
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=mhmQEgBtMVGLN6nRmvo%2BfASKwR8Sg18LKRi0ewZIjlh1ZJidPpyAmc4w%2BF9x92EhuVYqSDB2ItljSCBY4Ncfy4XHwdR74ObBb19Ew57GvQS5R%2Bc%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
alt-svc: h3=":443"; ma=86400
Open service 172.66.47.98:443 · helloking.pages.dev
2025-12-30 04:53
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 04:53:17 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
CF-Ray: 9b5eeebdbd533331-LHR
CF-Cache-Status: DYNAMIC
Server: cloudflare
Vary: Accept-Encoding
x-cache-lookup: Cache Hit
x-content-type-options: nosniff
x-download-options: noopen
x-frame-options: SAMEORIGIN
x-nws-log-uuid: 3908925915054336446
x-readtime: 317
x-server: ops-zhaomintx-ngx-prd-000077-cvm
x-xss-protection: 1; mode=block
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=brrNmClqBdz4%2B75qtNhvCikyU1lGTF%2FOKv0KgaQvL6aZ3ZJWU7ICmXpxxF1CXzPajTYHTdRuKeQiReA6lxtt3ix%2B%2FeK3TGBEiDuRl0PuGzITwq0%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
alt-svc: h3=":443"; ma=86400
Open service 172.66.47.98:443 · helloking.pages.dev
2025-12-22 05:49
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 05:49:04 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
CF-Ray: 9b1d556e5b171e68-FRA
CF-Cache-Status: DYNAMIC
Cache-Control: must-revalidate, no-cache, private
Expires: Sun, 1 Jan 2006 01:00:00 GMT
Server: cloudflare
Set-Cookie: ll="108258"; path=/; domain=.douban.com; expires=Tue, 22-Dec-2026 05:49:03 GMT
Set-Cookie: bid=9z6ZbtDYJ0E; Expires=Tue, 22-Dec-26 05:49:03 GMT; Domain=.douban.com; Path=/
Strict-Transport-Security: max-age=15552000;
Vary: accept-encoding
Pragma: no-cache
x-dae-app: sns
x-dae-instance: home
x-dae-internal-nurl: _index
x-dae-mountpoint: True
x-douban-mobileapp: 0
x-douban-newbid: 9z6ZbtDYJ0E
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=JPd6P8ChLztADm0n%2F1Yg7iOaJVT4kg8yvLrd9bt%2FzlyI7J11p5E8pnKmbA0o2SkhoNYq480L321ja14SCVxHQ0Y8WjKZkGqivJwc8PhOCwfAf58%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
alt-svc: h3=":443"; ma=86400
Open service 172.66.47.98:443 · helloking.pages.dev
2025-12-20 06:19
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 06:19:19 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
CF-Ray: 9b0d07003e6b7aa6-EWR
CF-Cache-Status: DYNAMIC
Age: 19
Cache-Control: public, max-age=300
Server: cloudflare
Set-Cookie: _as=fffmC7yCpueQp_BiIdeu9bmerG4BK380a_acq23uTmPQyxDpr5_h8g; Path=/; Domain=.autohome.com.cn; Expires=Sat, 20 Dec 2025 06:50:19 GMT; Secure; HttpOnly
Vary: Accept-Encoding, x-cdn-platform-key
cdn-address: 27.221.38.35
cdn-enterprise: bdy
cdn-res-hit: HIT
ohc-cache-hit: qd2un56 [2], csix56 [2]
ohc-file-size: 104304
ohc-global-saved-time: Sat, 20 Dec 2025 06:18:56 GMT
origin-agent-cluster: ?0
server-timing: ngx_cache;desc=HIT, next_cache;desc=next_cache_null, Origin;dur=0, UpHeaderTime;dur=0, UpConTime;dur=0
x-b3-sampled: 1
x-b3-spanid: 42de8c2f4ea1a881
x-b3-traceid: 0d3c17c07f349d73596428a10cc62986
x-cache-status: HIT
x-envoy-upstream-service-time: 1
x-old-cache-scheme: public, max-age=300
x-origin-pod: 196.90
x-pod: 218.108
x-proxy-cache-status: HIT
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ASrBXqEKseP7bNutCMzCv%2FYkOIn9YpKm0RjLSZsCdj%2Fx46pfI0cgYLSTRnYsdgbYYf2rUxcPfhSqkzj8PbxMsRGHUWHOAaaU6cqXpJCouCbsB%2BM%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
alt-svc: h3=":443"; ma=86400