BunnyCDN-BE1-1161
tcp/80
BunnyCDN-DE1-1330
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa35a650c079823b9b57de2cf50cba1c9b5671d88b0
GraphQL introspection enabled at /graphql Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea28e06abc0cf3da13eb496b6ccca54c87ddbbed
GraphQL introspection enabled at /graphql/api Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa35a650c079823b9b57de2cf50cba1c9b5e0566fed
GraphQL introspection enabled at /graphql Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea28e06abc0cf3da13eb496b6ccca54c07fab1ce
GraphQL introspection enabled at /graphql/api Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa35a650c079823b9b57de2cf50cba1c9b5671d88b0
GraphQL introspection enabled at /graphql Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa35a650c079823b9b57de2cf50cba1c9b5e0566fed
GraphQL introspection enabled at /graphql Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea28e06abc0cf3da13eb496b6ccca54c07fab1ce
GraphQL introspection enabled at /graphql/api Types: 610 (by kind: ENUM: 58, INPUT_OBJECT: 145, INTERFACE: 30, OBJECT: 372, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Open service 207.211.214.145:80 · images.heartsmith.com
2026-01-10 00:26
HTTP/1.1 200 OK Date: Sat, 10 Jan 2026 00:26:28 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-BE1-1161 CDN-PullZone: 1622110 CDN-RequestCountryCode: CA Accept-Ranges: bytes Age: 66112 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sat, 09 Jan 2027 06:04:29 GMT Pragma: cache X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-0146a03e32f2f0a80 x-platform-server: i-0146a03e32f2f0a80 X-Frame-Options: SAMEORIGIN x-timer: S1767938669.203595,VS0,VE6640 traceresponse: 00-1888fada4ac23bcdedc24c63b13078c7-86e87953d23b56f9-01
Open service 185.111.111.156:443 · images.heartsmith.com
2026-01-09 15:23
HTTP/1.1 200 OK Date: Fri, 09 Jan 2026 15:23:48 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-DE1-1330 CDN-PullZone: 1622110 CDN-RequestCountryCode: CA Accept-Ranges: bytes Age: 33552 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sat, 09 Jan 2027 06:04:29 GMT Pragma: cache X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-0146a03e32f2f0a80 x-platform-server: i-0146a03e32f2f0a80 X-Frame-Options: SAMEORIGIN x-timer: S1767938669.203595,VS0,VE6640 traceresponse: 00-1888fada4ac23bcdedc24c63b13078c7-86e87953d23b56f9-01
Open service 207.211.214.145:80 · images.heartsmith.com
2026-01-02 20:21
HTTP/1.1 200 OK Date: Fri, 02 Jan 2026 20:21:15 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-BE1-1161 CDN-PullZone: 1622110 CDN-RequestCountryCode: DE Accept-Ranges: bytes Age: 51315 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sat, 02 Jan 2027 06:05:59 GMT Pragma: cache x-timer: S1767333960.792189,VS0,VE501 traceresponse: 00-1886d4df6a7743f2bca224855efd4b16-f8793ccc4cb4a01d-01 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-033e534541cf5fc13 x-platform-server: i-033e534541cf5fc13
Open service 185.111.111.156:443 · images.heartsmith.com
2026-01-02 12:20
HTTP/1.1 200 OK Date: Fri, 02 Jan 2026 12:20:05 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-DE1-1330 CDN-PullZone: 1622110 CDN-RequestCountryCode: CA Accept-Ranges: bytes Age: 22445 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sat, 02 Jan 2027 06:05:59 GMT Pragma: cache x-timer: S1767333960.792189,VS0,VE501 traceresponse: 00-1886d4df6a7743f2bca224855efd4b16-f8793ccc4cb4a01d-01 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-033e534541cf5fc13 x-platform-server: i-033e534541cf5fc13
Open service 207.211.214.145:80 · images.heartsmith.com
2025-12-23 03:04
HTTP/1.1 200 OK Date: Tue, 23 Dec 2025 03:04:01 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-BE1-1161 CDN-PullZone: 1622110 CDN-RequestCountryCode: CA Accept-Ranges: bytes Age: 25385 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Tue, 22 Dec 2026 20:00:56 GMT Pragma: cache X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-02ce9dd49236fd9eb x-platform-server: i-02ce9dd49236fd9eb X-Frame-Options: SAMEORIGIN x-timer: S1766433656.393236,VS0,VE514 traceresponse: 00-1883a20d30cffb64dea3f6f7f9f2406a-d7be7aa223fbe4f6-01
Open service 185.111.111.156:443 · images.heartsmith.com
2025-12-22 18:29
HTTP/1.1 200 OK Date: Mon, 22 Dec 2025 18:29:30 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-DE1-1330 CDN-PullZone: 1622110 CDN-RequestCountryCode: GB Accept-Ranges: bytes Age: 6090 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Tue, 22 Dec 2026 16:47:59 GMT Pragma: cache X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-033e534541cf5fc13 x-platform-server: i-033e534541cf5fc13 X-Frame-Options: SAMEORIGIN x-timer: S1766422079.067244,VS0,VE954 traceresponse: 00-18839785a3af594534440fd27217341b-a55c4a67065b43b8-01
Open service 207.211.214.145:80 · images.heartsmith.com
2025-12-21 07:58
HTTP/1.1 200 OK Date: Sun, 21 Dec 2025 07:58:36 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-BE1-1161 CDN-PullZone: 1622110 CDN-RequestCountryCode: SG Accept-Ranges: bytes Age: 6641 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Mon, 21 Dec 2026 06:07:49 GMT Pragma: cache X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-0146a03e32f2f0a80 x-platform-server: i-0146a03e32f2f0a80
Open service 185.111.111.156:443 · images.heartsmith.com
2025-12-20 18:32
HTTP/1.1 200 OK Date: Sat, 20 Dec 2025 18:32:08 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-DE1-1330 CDN-PullZone: 1622110 CDN-RequestCountryCode: SG Accept-Ranges: bytes Age: 44285 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sun, 20 Dec 2026 06:14:02 GMT Pragma: cache X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-0146a03e32f2f0a80 x-platform-server: i-0146a03e32f2f0a80 x-timer: S1766211242.487147,VS0,VE470 X-XSS-Protection: 1; mode=block traceresponse: 00-1882d7c46af5c9630fdc8be627778fa5-97b1e23b90d5c9c3-01
Open service 207.211.214.145:80 · images.heartsmith.com
2025-12-19 09:21
HTTP/1.1 200 OK Date: Fri, 19 Dec 2025 09:21:10 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Server: BunnyCDN-BE1-1161 CDN-PullZone: 1622110 CDN-RequestCountryCode: US Accept-Ranges: bytes Age: 11814 Cache-Control: no-store, must-revalidate, no-cache, max-age=0 Expires: Sat, 19 Dec 2026 06:04:12 GMT Pragma: cache X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff x-debug-info: eyJyZXRyaWVzIjowfQ== x-platform-server: i-033e534541cf5fc13 x-platform-server: i-033e534541cf5fc13 x-timer: S1766124252.008472,VS0,VE5340 X-XSS-Protection: 1; mode=block traceresponse: 00-188288a65e5bc1c1cda845af43ca9c75-c574970b43481717-01