Heroku
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f5e22fb4afa9eb63b626c30eb626c30eb626c30eb626c30e
Public Swagger UI/API detected at path: /api/swagger.json - sample paths: GET /search POST /email-webhook
Open service 15.197.149.68:443 · parallelsearch.compose.law
2026-01-09 09:48
HTTP/1.1 307 Temporary Redirect
Content-Length: 279
Content-Type: text/html; charset=utf-8
Date: Fri, 09 Jan 2026 09:48:27 GMT
Location: https://parallelsearch.casetext.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=z17gZ9q7ptf7YhkHOCYU%2BU9Rko1K5kjbaYgvV8wwazg%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767952107"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=z17gZ9q7ptf7YhkHOCYU%2BU9Rko1K5kjbaYgvV8wwazg%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767952107"
Server: Heroku
Strict-Transport-Security: max-age=31536000
Via: 1.1 heroku-router
Connection: close
Page title: Redirecting...
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>Redirecting...</title>
<h1>Redirecting...</h1>
<p>You should be redirected automatically to target URL: <a href="https://parallelsearch.casetext.com/">https://parallelsearch.casetext.com/</a>. If not click the link.
Open service 15.197.149.68:443 · parallelsearch.compose.law
2026-01-02 10:58
HTTP/1.1 307 Temporary Redirect
Content-Length: 279
Content-Type: text/html; charset=utf-8
Date: Fri, 02 Jan 2026 10:58:08 GMT
Location: https://parallelsearch.casetext.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=zQ651ACsGDxGL13gzuIcV7yNQvK2AHn6Pi0HJ%2B6CBkA%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1767351488"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=zQ651ACsGDxGL13gzuIcV7yNQvK2AHn6Pi0HJ%2B6CBkA%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1767351488"
Server: Heroku
Strict-Transport-Security: max-age=31536000
Via: 1.1 heroku-router
Connection: close
Page title: Redirecting...
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>Redirecting...</title>
<h1>Redirecting...</h1>
<p>You should be redirected automatically to target URL: <a href="https://parallelsearch.casetext.com/">https://parallelsearch.casetext.com/</a>. If not click the link.
Open service 15.197.149.68:443 · parallelsearch.compose.law
2025-12-22 15:35
HTTP/1.1 307 Temporary Redirect
Content-Length: 279
Content-Type: text/html; charset=utf-8
Date: Mon, 22 Dec 2025 15:35:34 GMT
Location: https://parallelsearch.casetext.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=WkUdhZs8ln%2FoXi7oHp1luJg5UVVIzVqNeeRN00gBRYc%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766417734"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=WkUdhZs8ln%2FoXi7oHp1luJg5UVVIzVqNeeRN00gBRYc%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766417734"
Server: Heroku
Strict-Transport-Security: max-age=31536000
Via: 1.1 heroku-router
Connection: close
Page title: Redirecting...
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>Redirecting...</title>
<h1>Redirecting...</h1>
<p>You should be redirected automatically to target URL: <a href="https://parallelsearch.casetext.com/">https://parallelsearch.casetext.com/</a>. If not click the link.
Open service 15.197.149.68:443 · parallelsearch.compose.law
2025-12-20 16:27
HTTP/1.1 307 Temporary Redirect
Content-Length: 279
Content-Type: text/html; charset=utf-8
Date: Sat, 20 Dec 2025 16:27:55 GMT
Location: https://parallelsearch.casetext.com/
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=RC35nGhekGwDxhrww1qyhJuodrkeIyzJ31MhV5IRj%2BI%3D\u0026sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6\u0026ts=1766248075"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=RC35nGhekGwDxhrww1qyhJuodrkeIyzJ31MhV5IRj%2BI%3D&sid=929419e7-33ea-4e2f-85f0-7d8b7cd5cbd6&ts=1766248075"
Server: Heroku
Strict-Transport-Security: max-age=31536000
Via: 1.1 heroku-router
Connection: close
Page title: Redirecting...
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<title>Redirecting...</title>
<h1>Redirecting...</h1>
<p>You should be redirected automatically to target URL: <a href="https://parallelsearch.casetext.com/">https://parallelsearch.casetext.com/</a>. If not click the link.