Heroku
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a25171f04ae436f4bb5320e9998bef8cd750beb4
GraphQL introspection enabled at /graphql Types: 1388 (by kind: ENUM: 149, INPUT_OBJECT: 618, OBJECT: 602, SCALAR: 9, UNION: 10) Operations: - Query: Query | fields: appVersion, appliedPricings, asset, assetInventories, assetInventorySummary - Mutation: Mutation | fields: accountingAsync, acknowledgeNote, addAssetToDeliveryOrder, addCodeToAsset, addFeeToOrderGroup Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa33a5883de4770194e85746cbf1c0b16728ed15ee2
GraphQL introspection enabled at /graphql Types: 1368 (by kind: ENUM: 144, INPUT_OBJECT: 611, OBJECT: 594, SCALAR: 9, UNION: 10) Operations: - Query: Query | fields: appVersion, appliedPricings, asset, assetInventories, assetInventorySummary - Mutation: Mutation | fields: accountingAsync, acknowledgeNote, addAssetToDeliveryOrder, addCodeToAsset, addFeeToOrderGroup Directives: deprecated, include, skip (total: 3)
Open service 35.71.179.82:443 · iit.fleetpanda.com
2026-01-09 18:36
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://iit.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=DsfiRBREHUHmESZQCx7AVurQQ2XhUCyXiq9dlYdMa4o%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1767983775"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=DsfiRBREHUHmESZQCx7AVurQQ2XhUCyXiq9dlYdMa4o%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1767983775"
Server: Heroku
Set-Cookie: _fleetpanda_session=XobdeIom925%2F966foJxJpF6S6KhXdZXm3xjoIUjk13Ni6AHS6RrRRcCv%2BcW%2FLSq%2F3BRHx9CoNxIVy4bZjb3%2FKZzPZc0orrXBi4a84UTcrFJnB2K1%2FXeTwkeMAXtVJnn3CzFSsm92gQC2AbZGFlDjZyfHwRJpaet7ajU%2B3yULAQbKW3dacoXji8oijP44n7cIjNwQl9sMtiL1FfG5Gmg%2FGWmMv3Gb--ju%2BUoFsxdG2knOTX--1jnpTv9c9h7TqKEVLEF9tQ%3D%3D; domain=.iit.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 9c332ead-3871-fedd-9499-e7430e3f7880
X-Runtime: 0.006109
Date: Fri, 09 Jan 2026 18:36:15 GMT
Content-Length: 104
Connection: close
<html><body>You are being <a href="https://iit.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 35.71.179.82:443 · iit.fleetpanda.com
2025-12-23 04:32
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://iit.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=iGcdHe%2BOE97PY7ryUyNfCMsbuajoFEEyaY6W%2BTsShmE%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766464359"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=iGcdHe%2BOE97PY7ryUyNfCMsbuajoFEEyaY6W%2BTsShmE%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766464359"
Server: Heroku
Set-Cookie: _fleetpanda_session=AE0%2FObxVCbAzS7zS7XXCFHxbnUV6MoJY%2F97g8207t3BNrOWBNcdfoRdRE75a5O0sujrfdQexTIWZ0Wtmbx5Y5PwsrXXwKa7QqjdUXR65FihZkJS7RpW5k1PNdsFJI5S4cnI01M18KkbaVSyTnWBVbYYY9NxUO6N7dus3zP7MWjrIl44gl%2FWKytyHC38OSCqMqnAtKJMnsIHgsvx1WpLJ32Gg8szL--Wjq%2Beuin6GSsZGo5--UOsgbZMm5D5zEZ%2FBJlPY%2Fg%3D%3D; domain=.iit.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 308bcc23-c347-eafc-5e31-8ba2ef92c572
X-Runtime: 0.004254
Date: Tue, 23 Dec 2025 04:32:39 GMT
Content-Length: 104
Connection: close
<html><body>You are being <a href="https://iit.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 35.71.179.82:443 · iit.fleetpanda.com
2025-12-21 10:05
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://iit.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=BHxkqPPQcKsr6Lhd1wGpaKNFRuW7DbT8Y0agTfUAMa0%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766311553"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=BHxkqPPQcKsr6Lhd1wGpaKNFRuW7DbT8Y0agTfUAMa0%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766311553"
Server: Heroku
Set-Cookie: _fleetpanda_session=MapS5LPGCDnjnBp%2FTY8tj%2BXj0cvJn0eTd8T%2BwN0UILtWGM%2B7UKsZK7EoKCFjw8Bo%2FIakgscMqwM4SPD3KZ3Yg4vzxygIvnN4L6YP2MJ8W4UFj1L%2B%2F6GeTg8pPXxpT7FX2YtlCJpezT%2B1UzJzO5dif1oNPS2uKgYdNdiXdSMvkm9ulKB2lrE9xK0IAf8YpqiUX68470SVSX1ty2zSzs9Om77dDSLO--7SiBnW69V4nZ11Hc--UG6lotcJ1FQxgYYzTkY%2B%2BA%3D%3D; domain=.iit.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 97e4fdb9-4d18-b099-1937-c2e67bce2f1e
X-Runtime: 0.004570
Date: Sun, 21 Dec 2025 10:05:53 GMT
Content-Length: 104
Connection: close
<html><body>You are being <a href="https://iit.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 35.71.179.82:443 · iit.fleetpanda.com
2025-12-19 00:16
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://iit.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=lafiQDciih7ANdWVaB4uolgpnW1jfu0nSvWtIAKLVHE%3D\u0026sid=1b10b0ff-8a76-4548-befa-353fc6c6c045\u0026ts=1766103371"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=lafiQDciih7ANdWVaB4uolgpnW1jfu0nSvWtIAKLVHE%3D&sid=1b10b0ff-8a76-4548-befa-353fc6c6c045&ts=1766103371"
Server: Heroku
Set-Cookie: _fleetpanda_session=kkhLFdMLt1mS4%2FReLLW5rR%2BRpEFyeGol7zHgzv3RzuvIgOSXWf0yfIMrb5ucmMUgJw%2Bpid%2B8juRCo1h7KUYiK8ZG%2BslKb7Ny%2F19gzNPGDPsFabKERKQ3gDrub4rEQdjsQVTnx6czs4zJtqMRCcLRuV2i83r7KZGL8hshWBc95kcuuTWIYnF05zaEoPRj9avLyuJhSmDmPI1InCS8adr2Qu5OjsnP--XVnQM2GQzxZyQwh4--uy10rorABhyoYQ0W%2BtJGnA%3D%3D; domain=.iit.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: ce20f25d-f1aa-bf20-c675-da9a62ba4226
X-Runtime: 0.005645
Date: Fri, 19 Dec 2025 00:16:11 GMT
Content-Length: 104
Connection: close
<html><body>You are being <a href="https://iit.fleetpanda.com/users/login">redirected</a>.</body></html>