cloudflare
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2
GraphQL introspection enabled at /graphql/api
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3735153f777e7e9e5b395c8c26780941ff9602e47
GraphQL introspection enabled at /graphql Types: 1017 (by kind: ENUM: 81, INPUT_OBJECT: 255, INTERFACE: 34, OBJECT: 637, SCALAR: 5, UNION: 5) Operations: - Query: Query | fields: MpRewardConfig, MpRewardIcon, MpRewardShoppingCartSpendingRules, NewestBlogPosts, RelatedBlogPosts - Mutation: Mutation | fields: AmxnotifStockSubscribe, MpRewardInvite, MpRewardRefer, MpRewardSpendingPoint, MpRewardSubscribe Directives: deprecated, include, oneOf, skip (total: 4)
Open service 172.67.71.59:443 · hr.next.gymbeam.dev
2026-01-23 02:48
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 02:48:17 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=EsdXiItoF7uyqJUP%2BXETh3Q%2BRV1FO4sEiF%2Bo04gsICfQG3g6us9HvKc1zUFuhy6QNKOCTHOyuWdlPIQ%2BTkwWKzbuFTUMHXC%2BCx5oJscagHVlMw%3D%3D"}]}
cross-origin-opener-policy: same-origin-allow-popups
cross-origin-resource-policy: same-origin
link: <https://hr.next.gymbeam.dev/media/gymbeam/bannerslider/s/k/sk_general-slider-mobile_6.jpg>; rel=preload; as="image"; fetchpriority="high", <https://hr.next.gymbeam.dev/media/gymbeam/bannerslider/s/k/sk_general-slider-desktop_1_6.jpg>; rel=preload; as="image"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/schudnut.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/budovatSvalovuHmotu.png?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/podporitRegeneraciu.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/zlepsitVyhon.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/zdravsieMaskrtit.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/zacatCvicitDoma.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/podporitImunitu.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high", <https://gymbeam.sk/media/.renditions/wysiwyg/sportoveOblecenie.jpg?v=1>; rel=preload; as="image"; imagesizes="(max-width: 640px) 173px%2C (max-width: 1024px) 216px%2C 260px"; fetchpriority="high"
origin-agent-cluster: ?1
referrer-policy: strict-origin-when-cross-origin
Set-Cookie: NEXT_LOCALE=hr; Path=/; SameSite=lax
store: gymbeamhr
strict-transport-security: max-age=631138519; includeSubDomains
user-agent: Mozilla/5.0 (l9scan/2.0.9353e21373e27363e2237313; +https://leakix.net)
vary: Accept-Encoding
vary: rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, Accept-Encoding
x-content-type-options: nosniff
x-customer-segment: 0db377921f4ce762c62526131097968f
x-download-options: noopen
x-forwarded-url: https://hr.next.gymbeam.dev/
x-frame-options: SAMEORIGIN
x-magento-tags: store,cms_b,mp_smtp_script,cat_c,cms_b_footer_block_link_customer_service,cms_b_footer_block_link_social_media,cms_b_footer_block_link_certifications,cms_b_footer_block_link_contact,cms_p_8246,react_homepage
x-middleware-rewrite: /hr
x-permitted-cross-domain-policies: none
x-powered-by: Next.js
x-request-start-time: 1769136496957
x-trace-id: -
x-xss-protection: 0
via: 1.1 google
alt-svc: h3=":443"; ma=86400
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=15,cfOrigin;dur=163
CF-RAY: 9c23f8a18d637cf6-EWR
Open service 172.67.71.59:443 · hr.next.gymbeam.dev
2026-01-10 00:07
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 00:07:04 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=9XD9BF93prQx4ucdgEQwpzVxUObwv5uppYA%2BKKoZYhMWsqQEU4RHL6kT8zc1uvwCiXCvUP9UOQHdY2xq2mJNvOJNujq0SQEELD2hCoyVCYEKag%3D%3D"}]}
cross-origin-opener-policy: same-origin-allow-popups
cross-origin-resource-policy: same-origin
origin-agent-cluster: ?1
referrer-policy: strict-origin-when-cross-origin
store: gymbeamhr
strict-transport-security: max-age=631138519; includeSubDomains
user-agent: Mozilla/5.0 (l9scan/2.0.9353e21373e27363e2237313; +https://leakix.net)
vary: Accept-Encoding
vary: RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding
x-content-type-options: nosniff
x-customer-segment: 0db377921f4ce762c62526131097968f
x-download-options: noopen
x-forwarded-url: https://hr.next.gymbeam.dev/
x-frame-options: SAMEORIGIN
x-magento-tags: store,cms_b,mp_smtp_script,cat_c,cms_b_footer_block_link_customer_service,cms_b_footer_block_link_social_media,cms_b_footer_block_link_certifications,cms_b_footer_block_link_contact,cms_p_8246,react_homepage
x-middleware-rewrite: /hr
x-permitted-cross-domain-policies: none
x-powered-by: Next.js
x-trace-id: VUJCqN--RhRVp-tsm9TRm
x-xss-protection: 0
via: 1.1 google
alt-svc: h3=":443"; ma=86400
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=343
CF-RAY: 9bb7ee9c09d255d7-EWR
Open service 172.67.71.59:443 · hr.next.gymbeam.dev
2026-01-02 20:24
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 20:24:34 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=LgQB2MCxKDG1H2fJcP8asfAMGBcwM%2FxVv%2BBF0snyq5H22I6rxxAHdGMl5AfLonAhIzJIpLClWXdAdIkE8EewG5fafqdbmeImrXEJ7DuEO7zcQw%3D%3D"}]}
cross-origin-opener-policy: same-origin-allow-popups
cross-origin-resource-policy: same-origin
origin-agent-cluster: ?1
referrer-policy: strict-origin-when-cross-origin
store: gymbeamhr
strict-transport-security: max-age=631138519; includeSubDomains
user-agent: Mozilla/5.0 (l9scan/2.0.9353e21373e27363e2237313; +https://leakix.net)
vary: Accept-Encoding
vary: RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding
x-content-type-options: nosniff
x-customer-segment: 0db377921f4ce762c62526131097968f
x-download-options: noopen
x-forwarded-url: https://hr.next.gymbeam.dev/
x-frame-options: SAMEORIGIN
x-magento-tags: store,cms_b,mp_smtp_script,cat_c,cms_b_footer_block_link_customer_service,cms_b_footer_block_link_social_media,cms_b_footer_block_link_certifications,cms_b_footer_block_link_contact,cms_p_8246,react_homepage
x-middleware-rewrite: /hr
x-permitted-cross-domain-policies: none
x-powered-by: Next.js
x-trace-id: wB1RiWhpXuD8v96c8qK6w
x-xss-protection: 0
via: 1.1 google
alt-svc: h3=":443"; ma=86400
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=10,cfOrigin;dur=716
CF-RAY: 9b7cfb0918588465-EWR
Open service 172.67.71.59:443 · hr.next.gymbeam.dev
2025-12-23 06:47
HTTP/1.1 200 OK
Date: Tue, 23 Dec 2025 06:47:09 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=2x4dAHkRaXTYTmfu2YhakJL%2BXnpAuVN2MG5eyJk7tR%2BsRA9SZTnBCDXsRvibQMfzvWnZNoDRRm8EXy9iupmE7MZobCE8yjOx3G9lruivSjsNCg%3D%3D"}]}
cross-origin-opener-policy: same-origin-allow-popups
cross-origin-resource-policy: same-origin
origin-agent-cluster: ?1
referrer-policy: strict-origin-when-cross-origin
store: gymbeamhr
strict-transport-security: max-age=631138519; includeSubDomains
user-agent: Mozilla/5.0 (l9scan/2.0.9353e21373e27363e2237313; +https://leakix.net)
vary: Accept-Encoding
vary: RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding
x-content-type-options: nosniff
x-customer-segment: 0db377921f4ce762c62526131097968f
x-download-options: noopen
x-forwarded-url: https://hr.next.gymbeam.dev/
x-frame-options: SAMEORIGIN
x-magento-tags: store,cms_b,mp_smtp_script,cat_c,cms_b_footer_block_link_customer_service,cms_b_footer_block_link_social_media,cms_b_footer_block_link_certifications,cms_b_footer_block_link_contact,cms_p_8246,react_homepage
x-middleware-rewrite: /hr
x-permitted-cross-domain-policies: none
x-powered-by: Next.js
x-trace-id: SejjPv58GbxAJtv9sj-H8
x-xss-protection: 0
via: 1.1 google
alt-svc: h3=":443"; ma=86400
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=5,cfOrigin;dur=237
CF-RAY: 9b25e7ec783d1d0c-FRA