cloudflare
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Open service 104.21.64.116:80 · overseerr.slycloud.net
2026-01-22 22:51
HTTP/1.1 307 Temporary Redirect
Date: Thu, 22 Jan 2026 22:51:18 GMT
Transfer-Encoding: chunked
Connection: close
location: /login
Server: cloudflare
x-powered-by: Express
x-served-by: overseerr.slycloud.net
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=25,cfOrigin;dur=284
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=8HxTlaG6C10WPHmcoxGwD6dCz2sd%2B%2Bu8C%2Fm1qDHQD75LHkSoc2Tyq52nvWiObD0MX6KIR88CiVrdd%2BwKdyGMd50CPFH%2FMPbOA0%2FBbSVRLdQbE%2BsdjP4%3D"}]}
CF-RAY: 9c229d7f8fc0a125-SIN
alt-svc: h3=":443"; ma=86400
Open service 104.21.64.116:443 · overseerr.slycloud.net
2026-01-22 22:51
HTTP/1.1 307 Temporary Redirect
Date: Thu, 22 Jan 2026 22:51:19 GMT
Transfer-Encoding: chunked
Connection: close
location: /login
Server: cloudflare
x-powered-by: Express
x-served-by: overseerr.slycloud.net
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=15,cfOrigin;dur=706
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=TWiuX%2F%2BLBVO932FbFUe9GMfH3lJ3eO9yPM0dbV6dzaWHJToaobMLX8%2BxcvQnm3CjHZxdPG6zu1KkWLnyHRqNovebSmQP4OlOz9t2%2B7uf2Q1EL36myTY%3D"}]}
CF-RAY: 9c229d81aeb5f9a9-EWR
alt-svc: h3=":443"; ma=86400