cloudflare
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2026-01-10 02:08
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 02:08:17 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9bb8a0293a13602e-SIN
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1768010896978x911988382369823600|1768010897000x645553550799821200; path=/; expires=Tue, 13 Jan 2026 02:08:17 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=8NEdbA-3-c0_uNeFLEOD7ns_XFk; path=/; expires=Tue, 13 Jan 2026 02:08:17 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1768010896978x911988382369823600; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":175.7,"percents":{"top":{"bubble_cpu":36,"block":63.8,"capacity_rl":0,"other_pause":0,"pre_fiber":0.4},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":60.2,"appserver_cache_misses_time":0,"redis":60.6,"fiber_queue":14.8,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":66,"fiber_queue":116,"blocks":115},"misc":{"userdb_results":1,"userdb_data":367,"spent_time":9496049}}
x-bubble-capacity-used: 0.146 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2026-01-09 05:17
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 05:17:49 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9bb1786c7a12a8f7-SIN
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1767935869025x218959716565147550|1767935869051x302241811229189570; path=/; expires=Mon, 12 Jan 2026 05:17:49 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=HY2VWLWyTl-gk_KubikLWOBhqr0; path=/; expires=Mon, 12 Jan 2026 05:17:49 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1767935869025x218959716565147550; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":195.4,"percents":{"top":{"bubble_cpu":36.4,"block":63.6,"capacity_rl":0,"other_pause":0,"pre_fiber":0.4},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":66.1,"appserver_cache_misses_time":0,"redis":59.8,"fiber_queue":16.8,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":69,"fiber_queue":128,"blocks":127},"misc":{"userdb_results":1,"userdb_data":367,"spent_time":10655160}}
x-bubble-capacity-used: 0.164 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400
Open service 104.19.240.93:8443 · programas.sebraestartups.com.br
2026-01-09 05:17
Open service 104.19.240.93:80 · programas.sebraestartups.com.br
2026-01-09 05:17
HTTP/1.1 301 Moved Permanently Date: Fri, 09 Jan 2026 05:17:48 GMT Content-Type: text/html Content-Length: 167 Connection: close Cache-Control: max-age=3600 Expires: Fri, 09 Jan 2026 06:17:48 GMT Location: https://programas.sebraestartups.com.br/ Strict-Transport-Security: max-age=31536000 Server: cloudflare CF-RAY: 9bb17869586e982f-YYZ alt-svc: h3=":443"; ma=86400 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>cloudflare</center> </body> </html>
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2026-01-02 23:50
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 23:50:04 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9b7e28140e8cdb60-AMS
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1767397804295x258642953609506720|1767397804321x965247006511311500; path=/; expires=Mon, 05 Jan 2026 23:50:04 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=nUtlGjiwKL6GxFWdh1px9FoD0XQ; path=/; expires=Mon, 05 Jan 2026 23:50:04 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1767397804295x258642953609506720; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":214.8,"percents":{"top":{"bubble_cpu":45,"block":54.8,"capacity_rl":0,"other_pause":0,"pre_fiber":0.3},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":36.4,"appserver_cache_misses_time":0,"redis":125.5,"fiber_queue":7.1,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":70,"fiber_queue":133,"blocks":132},"misc":{"userdb_results":1,"userdb_data":367,"spent_time":14506647}}
x-bubble-capacity-used: 0.223 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2025-12-23 09:23
HTTP/1.1 200 OK
Date: Tue, 23 Dec 2025 09:23:40 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9b26cd309eabf52e-EWR
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1766481820340x763586667574185000|1766481820358x819094004956988800; path=/; expires=Fri, 26 Dec 2025 09:23:40 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=Iu4Xt5bk0LMao-gfLLJoykENra4; path=/; expires=Fri, 26 Dec 2025 09:23:40 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1766481820340x763586667574185000; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":148.6,"percents":{"top":{"bubble_cpu":48.5,"block":51.4,"capacity_rl":0,"other_pause":0,"pre_fiber":0.5},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":56.6,"appserver_cache_misses_time":0,"redis":56.1,"fiber_queue":8.8,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":70,"fiber_queue":128,"blocks":127},"misc":{"userdb_results":1,"userdb_data":367,"spent_time":10800164}}
x-bubble-capacity-used: 0.166 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2025-12-21 05:31
HTTP/1.1 200 OK
Date: Sun, 21 Dec 2025 05:31:54 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9b14feefa8bad356-FRA
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1766295114311x116033446057987490|1766295114331x868425180398380000; path=/; expires=Wed, 24 Dec 2025 05:31:54 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=ZNtSkqrwtAFKwSJCkAl9d0Wsijs; path=/; expires=Wed, 24 Dec 2025 05:31:54 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1766295114311x116033446057987490; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":182.9,"percents":{"top":{"bubble_cpu":34.8,"block":65.1,"capacity_rl":0,"other_pause":0,"pre_fiber":0.5},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":34.6,"appserver_cache_misses_time":0,"redis":59.1,"fiber_queue":9.5,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":70,"fiber_queue":126,"blocks":125},"misc":{"userdb_results":1,"userdb_data":367,"spent_time":9534790}}
x-bubble-capacity-used: 0.147 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400
Open service 104.19.240.93:443 · programas.sebraestartups.com.br
2025-12-19 07:52
HTTP/1.1 200 OK
Date: Fri, 19 Dec 2025 07:52:29 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
CF-RAY: 9b055220aad37a38-EWR
x-powered-by: Express
x-content-type-options: nosniff
set-cookie: sebrae-startups_live_u2main=bus|1766130749633x225924503010550800|1766130749649x838822416409300700; path=/; expires=Mon, 22 Dec 2025 07:52:29 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_live_u2main.sig=JIRGMmIYNT0ZK8oWdKUR1Lf8GF0; path=/; expires=Mon, 22 Dec 2025 07:52:29 GMT; domain=programas.sebraestartups.com.br; secure; httponly
set-cookie: sebrae-startups_u1main=1766130749633x225924503010550800; path=/; domain=programas.sebraestartups.com.br; secure
referrer-policy: origin
x-frame-options: DENY
content-security-policy: frame-ancestors 'none';
cache-control: no-store
x-bubble-perf: {"total":159.6,"percents":{"top":{"bubble_cpu":45.5,"block":54.4,"capacity_rl":0,"other_pause":0,"pre_fiber":0.4},"sub":{"pp_userdb":0,"pp_wait_userdb":0,"http_request":0,"serverjson":37.9,"appserver_cache_misses_time":0,"redis":57.4,"fiber_queue":4.5,"capacity_wait":0}},"counts":{"pp_userdb":0,"http_request":0,"derived_build":0,"derived_cache_attempts":8,"derived_cache_memory_misses":8,"serverjson":69,"appserver_cache_attempts":1,"appserver_mem_cache_hits":0,"appserver_cache_hits":1,"appserver_cache_misses":0,"redis":71,"fiber_queue":128,"blocks":127},"misc":{"userdb_results":2,"userdb_data":2908,"spent_time":10901507}}
x-bubble-capacity-used: 0.168 unit-seconds used
x-bubble-capacity-limit: 0 ms slower
vary: Accept-Encoding
cf-cache-status: DYNAMIC
Strict-Transport-Security: max-age=31536000
Server: cloudflare
alt-svc: h3=":443"; ma=86400