cloudflare
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d606aeda8d391ad1d81f004accb8422aa81fee43046
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
GET /api/AuditEvent
GET /api/Composition
GET /api/Composition/{id}
GET /api/rate-limit/{id}
GET /health-check/sql
POST /api/Composition/{id}/$audit
POST /api/rate-limit
Open service 104.18.1.230:443 · saas-notes-api.nextech.com
2026-01-09 15:36
HTTP/1.1 404 Not Found Date: Fri, 09 Jan 2026 15:36:21 GMT Content-Length: 0 Connection: close CF-RAY: 9bb5027c8cbc7b0e-EWR Set-Cookie: ARRAffinity=84567d0574fe51e64dae62813e53a7e5c12f39f96b0bb86acc40eae210e7a0f5;Path=/;HttpOnly;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: ARRAffinitySameSite=84567d0574fe51e64dae62813e53a7e5c12f39f96b0bb86acc40eae210e7a0f5;Path=/;HttpOnly;SameSite=None;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: __cf_bm=OJJWdizTpD9WD9tUujmePQEDus0mPIs80eFXs0ahzeM-1767972981-1.0.1.1-j.y0BKu2jZKDJshV5KKZ23K06oHscFgWsqoEhYOO4lj5VjIDCzIVdUZVpfKKTLwq3cdurYWNiYsij4oGPSOlJIM9DCaXXlH52XJYJJizqj0; path=/; expires=Fri, 09-Jan-26 16:06:21 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 x-ms-middleware-request-id: 0a83e1e8-aca6-4416-80b2-df86032d656d Request-Context: appId=cid-v1:74322fe5-c710-4ac8-a6bd-16142bec8af7 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · saas-notes-api.nextech.com
2026-01-02 12:01
HTTP/1.1 404 Not Found Date: Fri, 02 Jan 2026 12:01:47 GMT Content-Length: 0 Connection: close CF-RAY: 9b7a1a8ecad419b1-FRA Set-Cookie: ARRAffinity=84567d0574fe51e64dae62813e53a7e5c12f39f96b0bb86acc40eae210e7a0f5;Path=/;HttpOnly;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: ARRAffinitySameSite=84567d0574fe51e64dae62813e53a7e5c12f39f96b0bb86acc40eae210e7a0f5;Path=/;HttpOnly;SameSite=None;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: __cf_bm=rndEx0e1o9DLx_M2zOyaMPlV.slxmPerdhmwPivDRJ8-1767355307-1.0.1.1-_U5t9rCO9m0pB09FCkaeJTZxhFLaAxa6.QYbnFgRerUrdusheHboNPemQ9aynklqz3DUTfISeIhV22Cb2.B3EI_5afx1qv1SBQnT3QnMhQw; path=/; expires=Fri, 02-Jan-26 12:31:47 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 x-ms-middleware-request-id: c2f3824a-714a-4358-9f05-90b69b8043be Request-Context: appId=cid-v1:74322fe5-c710-4ac8-a6bd-16142bec8af7 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · saas-notes-api.nextech.com
2025-12-22 19:51
HTTP/1.1 404 Not Found Date: Mon, 22 Dec 2025 19:51:08 GMT Content-Length: 0 Connection: close CF-RAY: 9b2226f68974dc98-FRA Set-Cookie: ARRAffinity=57386b35d4f6236ad1938db68b76ff65ea0d90338acb7afbec9e7e276f4860d8;Path=/;HttpOnly;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: ARRAffinitySameSite=57386b35d4f6236ad1938db68b76ff65ea0d90338acb7afbec9e7e276f4860d8;Path=/;HttpOnly;SameSite=None;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: __cf_bm=N4m5IvCRzTWiifr3tL8UxFjLn1L5kKgx0rUdyjPXb7M-1766433068-1.0.1.1-qs.3sgV57xmYY.M.EpHEDOjtKUr.lgQLPTX5R5xjJ90vMoMVetWkHSp0qdlqqIZF5c6J6t0JmZI_SPJ_OrsGaOE6CDE1d2pyrFwYYoy.RKs; path=/; expires=Mon, 22-Dec-25 20:21:08 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 x-ms-middleware-request-id: 45fdbc6b-960d-4381-a081-e2278d929810 Request-Context: appId=cid-v1:74322fe5-c710-4ac8-a6bd-16142bec8af7 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · saas-notes-api.nextech.com
2025-12-21 05:07
HTTP/1.1 404 Not Found Date: Sun, 21 Dec 2025 05:07:42 GMT Content-Length: 0 Connection: close CF-RAY: 9b14db7d2d0bd394-FRA Set-Cookie: ARRAffinity=c1eb9dee28b0650a59bcfc2c1b90aa109e11a2821430bac1bc38982eb27afeda;Path=/;HttpOnly;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: ARRAffinitySameSite=c1eb9dee28b0650a59bcfc2c1b90aa109e11a2821430bac1bc38982eb27afeda;Path=/;HttpOnly;SameSite=None;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: __cf_bm=EJC7K5cJplBk1OjvSWV_yVgi_86xgdyaSXHNSgPRTLw-1766293662-1.0.1.1-IrHouVhxuKIk6PKR7.uOWQocYQt0QpOqdDvofPwTT..GupiBY0vyz7oIftHN7sX_ypMx_B3mlqRe9Ek6Fxmofl8Mg6vLsby80QwwreK5uZw; path=/; expires=Sun, 21-Dec-25 05:37:42 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 x-ms-middleware-request-id: 5742f751-e79a-48b6-a97a-93203c126c0b Request-Context: appId=cid-v1:74322fe5-c710-4ac8-a6bd-16142bec8af7 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare
Open service 104.18.1.230:443 · saas-notes-api.nextech.com
2025-12-19 08:53
HTTP/1.1 404 Not Found Date: Fri, 19 Dec 2025 08:53:04 GMT Content-Length: 0 Connection: close CF-RAY: 9b05aadfbf05cb6f-SJC Set-Cookie: ARRAffinity=c1eb9dee28b0650a59bcfc2c1b90aa109e11a2821430bac1bc38982eb27afeda;Path=/;HttpOnly;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: ARRAffinitySameSite=c1eb9dee28b0650a59bcfc2c1b90aa109e11a2821430bac1bc38982eb27afeda;Path=/;HttpOnly;SameSite=None;Secure;Domain=saas-notes-api.nextech.com Set-Cookie: __cf_bm=uDzO0mkG2DrHUGXt1SdWpSauf4_9YF9dx7juz0S_hqU-1766134384-1.0.1.1-LZYz93tWW0RmsBJUeLg6xKu_BaUNm_EK5axYKSmaWKkQxuAebMhEP.GthXEwasSBYgFTQze.vb3zBFPU1nGpSBYVo5SGXn4IGixZgb90xek; path=/; expires=Fri, 19-Dec-25 09:23:04 GMT; domain=.nextech.com; HttpOnly; Secure; SameSite=None Strict-Transport-Security: max-age=2592000 x-ms-middleware-request-id: 6b32b213-9695-4e1a-af82-19b02507a352 Request-Context: appId=cid-v1:74322fe5-c710-4ac8-a6bd-16142bec8af7 X-Powered-By: ASP.NET cf-cache-status: DYNAMIC Server: cloudflare