Heroku
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Open service 99.83.151.71:443 · mobile.fleetpanda.com
2026-01-10 00:41
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://mobile.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=KY3%2FZPl3CbbKQMlS%2Ffka74cHlBzMwNzXax23%2BHk6%2FG0%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1768005698"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=KY3%2FZPl3CbbKQMlS%2Ffka74cHlBzMwNzXax23%2BHk6%2FG0%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1768005698"
Server: Heroku
Set-Cookie: _fleetpanda_session=UyBGrpbWS%2Bgx1KrkVJWSL1mFTviHQ%2Bh95gTODmrIacAEw%2Fw%2F6nRHtJlUPmBloGcfFn5%2Bxk5r103IqUT1feqcbDqWYz60iIKb%2FJl%2FQA2BojTzDY%2FrAqc6q7LzVTjtfoWmFgnvRCxPijN0TGHHYzvH%2F1pMYFfQl32z1admS4gkrH73sphNw97SB8%2FEOOSv%2FbOZTr%2BnT0TBfV0HlSvhbjU9opFqvFPS--f%2B%2FT3hhd7%2FyFX6OW--GFZbn9ElblTIMHMdTpGoDQ%3D%3D; domain=.mobile.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: e86e82e4-916e-624e-2856-7492776c514a
X-Runtime: 0.030546
Date: Sat, 10 Jan 2026 00:41:38 GMT
Content-Length: 107
Connection: close
<html><body>You are being <a href="https://mobile.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 99.83.151.71:443 · mobile.fleetpanda.com
2026-01-02 19:26
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://mobile.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=xi6RFHFh1nCV0QFwS1vxIwfMSH23PtqO7mZTvXpPE0U%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767381987"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=xi6RFHFh1nCV0QFwS1vxIwfMSH23PtqO7mZTvXpPE0U%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767381987"
Server: Heroku
Set-Cookie: _fleetpanda_session=mvAS0edMkcLgcvlhvBiQjze6URMQpjSJbNUOnYt1d9vOAAAu0d8p1%2BWJj%2BR9Yxpr8zKHmgdqzpihJ06q%2FR24GX8iVlINGhCCAIJiQdrk%2B1NAkPFaFzTARzX0ZLmCKkJEf3EzK7naialHae49T3M77UBhj3Ok%2FiSIIg5lOl00noKBB9a2hCdtiHEW373mIYTDobgr%2BUPKd22CwpLzdQrz8Zxp3G3N--GcS5xCV2Ec%2FMJ3q1--6IySlSqaWJzwfpS5PVsZjw%3D%3D; domain=.mobile.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 8f7cabba-c904-2029-67bb-4eebf1bf5fc1
X-Runtime: 0.004483
Date: Fri, 02 Jan 2026 19:26:27 GMT
Content-Length: 107
Connection: close
<html><body>You are being <a href="https://mobile.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 99.83.151.71:443 · mobile.fleetpanda.com
2025-12-23 09:24
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://mobile.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=IYGqJYWO0HNbYzeVPnaXuOicZxwOzmzwqUvzPf%2Frb%2Bk%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766481894"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=IYGqJYWO0HNbYzeVPnaXuOicZxwOzmzwqUvzPf%2Frb%2Bk%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766481894"
Server: Heroku
Set-Cookie: _fleetpanda_session=xeiHd3Bogx7XVnv5V5y%2FqrBjW6YHWiCGbd2FcscQSCMEoS1u5d4HbVa9HvYk7%2Bz8IHJ8F%2FP32LJJjppfSL7uIEbNpli3%2BEoUDTGasu1jEd1gVD%2FVITjPuKhZYWfVH5kvUTJaPYs%2FFpspGIyj68y5ykVbOMh5kuiaoR10F866a7AFjayaKAXBJQDgyokmmEcT%2F0Uw%2BbulXLrWZNFhSGdx2B4P1gC6--OrwfD4RWQ1MV2q8i--UM4CaLH%2Fp0DWz1H5xjQvrA%3D%3D; domain=.mobile.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 69577617-ab38-3250-c224-a3223a75c154
X-Runtime: 0.023794
Date: Tue, 23 Dec 2025 09:24:54 GMT
Content-Length: 107
Connection: close
<html><body>You are being <a href="https://mobile.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 99.83.151.71:443 · mobile.fleetpanda.com
2025-12-21 05:29
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://mobile.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=5lF0iuyC4zRq82Oaj%2FiwqidUl%2FAy8wgYeLcsDm%2F1GEI%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766294950"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=5lF0iuyC4zRq82Oaj%2FiwqidUl%2FAy8wgYeLcsDm%2F1GEI%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766294950"
Server: Heroku
Set-Cookie: _fleetpanda_session=pzEekaEDV2h5BO6YZ25CXJGP0EzfHjwo4ravTdJtO6gONax%2BziqyBQoms%2FJkOBRJnAJb7%2BmrCjSmdI8pArdXFuYHsTSui%2FL2XUtr08xtXJSTp0rfeOPNebh9DeRi9auUPDq2A%2Fd2wfj0eNcQNZS4V7XGCBZ9uWJNKF0I67Uj%2FLqzh7KMc88QdcJsMIa%2FO8fFbJd2Jef%2B2tcShohmEUIKs3eX1Qkm--EWDh7omABl0VHFRB--vDljNUS66yPHX17bRY9UIQ%3D%3D; domain=.mobile.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 5d5dfa32-964d-1805-a651-4fb30d543902
X-Runtime: 0.004853
Date: Sun, 21 Dec 2025 05:29:10 GMT
Content-Length: 107
Connection: close
<html><body>You are being <a href="https://mobile.fleetpanda.com/users/login">redirected</a>.</body></html>
Open service 99.83.151.71:443 · mobile.fleetpanda.com
2025-12-19 07:57
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Type: text/html; charset=utf-8
Location: https://mobile.fleetpanda.com/users/login
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=GYpidNJuwYIWzqb%2FupWlFlcH9%2BasHstYycbAxgRZg7M%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766131030"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=GYpidNJuwYIWzqb%2FupWlFlcH9%2BasHstYycbAxgRZg7M%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766131030"
Server: Heroku
Set-Cookie: _fleetpanda_session=Fg1bNvIaY98Ts7OjvjTnm1YmM3MepAOQZPxFG%2Fvq7p9M3ua%2BicOjAQLSqQcPG4cUhzVCdKbTXgQNE7jpaZDzBbcL3tz0kuVh95RzRSY7VEYROeFTiFzKYCF29F6oOQO2h%2BntngJfywpRbJRTs7q%2FutFJ6a0UqyztzI6EgYLmvaHo5lkQspfaPNz5mu77nl4usIeSeWIxByE%2FNey6HC28J2yABd3s--qPHN0ZNRCADXEq88--1vNSwiXoTHrk0WyiT2ZWbg%3D%3D; domain=.mobile.fleetpanda.com; path=/; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Origin
Via: 1.1 heroku-router
X-Request-Id: 6f364746-3743-fa74-2d2a-4417f9519387
X-Runtime: 0.003382
Date: Fri, 19 Dec 2025 07:57:10 GMT
Content-Length: 107
Connection: close
<html><body>You are being <a href="https://mobile.fleetpanda.com/users/login">redirected</a>.</body></html>