cloudflare
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d60f0777e6ab5169a9d53aa90d7cc0d9e0a39322891
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
GET /api/rate-limit/{id}
GET /health-check/sql
POST /api/Call
POST /api/Call/status-callback
POST /api/Communication
POST /api/Communication/search
POST /api/Email
POST /api/Email/status-callback
POST /api/Sms
POST /api/Sms/status-callback
POST /api/rate-limit
Open service 104.18.1.230:443 · nextech-notification-api.nextech.com
2026-01-09 18:19
HTTP/1.1 404 Not Found Date: Fri, 09 Jan 2026 18:19:12 GMT Content-Length: 0 Connection: close CF-RAY: 9bb5f109ed57ef11-LHR Set-Cookie: ARRAffinity=028a57d27cc4ebef12657e0e1653fc270b241da54d4529c6222eb96e5aa99387;Path=/;HttpOnly;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinity=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinitySameSite=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: __cf_bm=uWxl45gnmL_FeR_jUTszvTWJKuCvt0e5zEZirCcrYSA-1767982752-1.0.1.1-fLLv5Qfs6jhiIrunmq00a.ITd.Yw3wI9idTYUxK_o7PoXIVPQBa1SKmlE6P7q6JuL06_IYJ7_2S_NF3NdtnZktm_UR_kR4DdeCN3Zbf42Cc; path=/; expires=Fri, 09-Jan-26 18:49:12 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:c20cac5e-e4dc-4f02-8d62-cd06119da753 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-notification-api.nextech.com
2026-01-02 22:12
HTTP/1.1 404 Not Found Date: Fri, 02 Jan 2026 22:12:34 GMT Content-Length: 0 Connection: close CF-RAY: 9b7d993f7b319fee-AMS Set-Cookie: ARRAffinity=393133b9ab43e2565bcf207492d3a336c0306cb33b6897762f1769f0eba96935;Path=/;HttpOnly;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinity=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinitySameSite=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: __cf_bm=SM48c_AL7z1zsUKJWSmnSlkNHZHQGA.WfD3DSgNtVwA-1767391954-1.0.1.1-lR6WOlzAnef_UF9D204PPORYDg.j47DP.cTDY._gZ2ELbBIOWrfH41yrzr7G39Lfk3EB2mpFCulw..K8dhSwXqSFFCw_LOSSi0tebysK4bM; path=/; expires=Fri, 02-Jan-26 22:42:34 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:c20cac5e-e4dc-4f02-8d62-cd06119da753 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-notification-api.nextech.com
2025-12-23 03:42
HTTP/1.1 404 Not Found Date: Tue, 23 Dec 2025 03:42:09 GMT Content-Length: 0 Connection: close CF-RAY: 9b24d8ec4af62151-AMS Set-Cookie: ARRAffinity=14a62e6bc4e4844b0b5f6eca9c9b9d6b381b4d87f0da1025f629522dec599ed6;Path=/;HttpOnly;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinity=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinitySameSite=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: __cf_bm=nbe0XVb4smI.6D62LOlmrajwTPAzrlZf6uwjhNoqtAE-1766461329-1.0.1.1-i.jmyslcTYyCTfcAzy6GBv7dQ.SWdGtfGed1ZQUsh7oUOz7DnUt9kC40qD2Dz1_YZkYP63tQa7JJqX4Mdgn4RNPxjxcJaSaD1pywqMYiE.Y; path=/; expires=Tue, 23-Dec-25 04:12:09 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:c20cac5e-e4dc-4f02-8d62-cd06119da753 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-notification-api.nextech.com
2025-12-21 10:53
HTTP/1.1 404 Not Found Date: Sun, 21 Dec 2025 10:53:15 GMT Content-Length: 0 Connection: close CF-RAY: 9b16d5ab6f3ae839-LHR Set-Cookie: ARRAffinity=eb635ef47d9374f47ee1dde305a3c9fdb204691970dda38684f67a86ac3e26fb;Path=/;HttpOnly;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinity=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinitySameSite=57ab2b0c6d9088bb5c0fa9bc3524fa7bf74845029b137affecaa40a3e7a28033;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: __cf_bm=JzMx7fOqw0fyissetodtvJRFkwJOr07Dfcr.AQOzQYI-1766314395-1.0.1.1-fMt62RtdWPSIFX5l27rD1J74CIg19pzSAY7Rfh2TQnaWAT1Mi486jqeQnCKmnqk4Z4bkpJzslYn0tEHNv_PMQmyZVybf5SwBLrZkITUr6D4; path=/; expires=Sun, 21-Dec-25 11:23:15 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:c20cac5e-e4dc-4f02-8d62-cd06119da753 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · nextech-notification-api.nextech.com
2025-12-19 08:35
HTTP/1.1 404 Not Found Date: Fri, 19 Dec 2025 08:35:07 GMT Content-Length: 0 Connection: close CF-RAY: 9b059094b996a8c2-EWR Set-Cookie: ARRAffinity=eb635ef47d9374f47ee1dde305a3c9fdb204691970dda38684f67a86ac3e26fb;Path=/;HttpOnly;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: ARRAffinitySameSite=eb635ef47d9374f47ee1dde305a3c9fdb204691970dda38684f67a86ac3e26fb;Path=/;HttpOnly;SameSite=None;Secure;Domain=nextech-notification-api.nextech.com Set-Cookie: __cf_bm=dvUnNzLCYA8hlNxRiuBtNA6A81arvEMRp6a5urjxv.s-1766133307-1.0.1.1-j9LhR672dqoYGVbulH.4NV0GfrGZocKikI8m8Bcd4FsoYHueFaLEKZlK1smrPCgyz0DHSWCub1kKTdpUn_ILXqqf0KGF0VztlkALVaWrFao; path=/; expires=Fri, 19-Dec-25 09:05:07 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 Request-Context: appId=cid-v1:c20cac5e-e4dc-4f02-8d62-cd06119da753 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare