cloudflare
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d6036b8243a8848f5e7f6a8527d250eafe9105d1635
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
GET /api/Clients/{id}
GET /api/Integrations/{id}
GET /api/rate-limit/{id}
POST /api/Clients
POST /api/Clients/Search
POST /api/Integrations
POST /api/Integrations/Search
POST /api/PersistedEvents
POST /api/rate-limit
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2026-01-09 13:15
HTTP/1.1 404 Not Found Date: Fri, 09 Jan 2026 13:15:53 GMT Content-Length: 0 Connection: close CF-RAY: 9bb434bb2b6788e9-AMS Set-Cookie: ARRAffinity=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=nUfGsDyTR3ZC5Gs3k6wbpv4XpkO83dFo9U5gxbh.J2w-1767964553-1.0.1.1-yc0eJYRAuaoGXNG5gHzTtC5V18G.59wmRGxxjRPNXZshnOb4T6WDL1JMV3D9Xf9o5PBkVUJsUctgVEgWYXwtdU2lqZPjRcQz8x_whqVQqjY; path=/; expires=Fri, 09-Jan-26 13:45:53 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2026-01-02 01:21
HTTP/1.1 404 Not Found Date: Fri, 02 Jan 2026 01:21:20 GMT Content-Length: 0 Connection: close CF-RAY: 9b767065ae02e85a-FRA Set-Cookie: ARRAffinity=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=yy36HF5_z1TW5EinB05h1jyciHudCbve5KL6PoiaQeM-1767316880-1.0.1.1-COYZMCwhqsPScK95Z6_REu5ikOcAmU3bRERquAKKlZXVM8yzBeRoKtkfIqdgemZaJ3z6Ry80.WkmGrNu98FzOaZ95rZlKWSVDwmWYfNVYDw; path=/; expires=Fri, 02-Jan-26 01:51:20 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2025-12-30 13:09
HTTP/1.1 404 Not Found Date: Tue, 30 Dec 2025 13:09:48 GMT Content-Length: 0 Connection: close CF-RAY: 9b61c611aa0a36fe-YYZ Set-Cookie: ARRAffinity=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=ntzhCZRz9IKRG8v6bd.kU.X_M8W63XT61QGgXzuDrZ0-1767100188-1.0.1.1-F_6OQsU6HqGIhJ7NBSEktcYjNIfTZ7GQ8NzOvn1Ez0jXCUr7CqGl_FTWel_XSRR2F2NnhzJfAbD4zcB0tryLCcptKCUO8EAg2cnlaXahQSw; path=/; expires=Tue, 30-Dec-25 13:39:48 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2025-12-22 06:47
HTTP/1.1 404 Not Found Date: Mon, 22 Dec 2025 06:47:18 GMT Content-Length: 0 Connection: close CF-RAY: 9b1daac65f1d4ba8-FRA Set-Cookie: ARRAffinity=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=4158b8cb52670287f6c8ed527deabcf61e852bbce20c1d69134187e490db1687;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=enREmtqTlxcciJbxtybVmwYupdva6qF2tzYkd4xOy2o-1766386038-1.0.1.1-ue6JgYVeoaw7VnVppzmP8n.TZtYJoQ7stNZ5jGjJU2N5qNCzB7_4C4dA_l.3fMovV4OfjnMHPw9JqVNv3eNy5FzlGjEo1B6cSdeTe2_ZKSs; path=/; expires=Mon, 22-Dec-25 07:17:18 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2025-12-20 17:27
HTTP/1.1 404 Not Found Date: Sat, 20 Dec 2025 17:27:30 GMT Content-Length: 0 Connection: close CF-RAY: 9b10d9cb6c581eef-BLR Set-Cookie: ARRAffinity=8b37f5369ed1debab319e4116426934169d856bc336f18b51d37c412871f55d1;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=8b37f5369ed1debab319e4116426934169d856bc336f18b51d37c412871f55d1;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=Owso6E5qvP15zm5EilUz1hEKfk6wzKe8G8yrAj9vKhc-1766251650-1.0.1.1-q3z_Tm9IP_OdMGhHHC5ZOZrznu_MwGvaic2.BFAuUwdqLb799ZSMje7J_7DMrQvfIE6lZk0LFD4BO0jXypg5zOH.5GwoEEpQPtnBDQhTN5Q; path=/; expires=Sat, 20-Dec-25 17:57:30 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-express-api-dev.nextech.com
2025-12-19 03:25
HTTP/1.1 404 Not Found Date: Fri, 19 Dec 2025 03:25:02 GMT Content-Length: 0 Connection: close CF-RAY: 9b03ca5c5ba0c45e-EWR Set-Cookie: ARRAffinity=8b37f5369ed1debab319e4116426934169d856bc336f18b51d37c412871f55d1;Path=/;HttpOnly;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: ARRAffinitySameSite=8b37f5369ed1debab319e4116426934169d856bc336f18b51d37c412871f55d1;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-express-api-dev.nextech.com Set-Cookie: __cf_bm=BS6l_tNI2k.EgV2v31blpBZ..qfgi2M_inuKVTQ7vS0-1766114702-1.0.1.1-e9mstNB3TRG7xA3rNYIiX0_.77QCigdYxFRhfU5KDIqxbWioPEcm9mTRi8l4yJWIFEBzsi54_Pe81nWI43hof3_SFEg4oe9_EV_1Pgru90o; path=/; expires=Fri, 19-Dec-25 03:55:02 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:cf696073-4859-444e-a6ae-578f15e1b444 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare