Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d60ab25fb0e97b7b05393a9b8f71c281a3f4afdf35e
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
DELETE /api/NotificationHubAccess/unregister/{installationId}
GET /api/CachedControls/GetCartId/{storeNo}
GET /api/CachedControls/GetControls/{storeNo}
GET /api/CachedControls/GetRegisters/{storeNo}
GET /api/Configuration/GetConfiguration/{storeNumber}
GET /api/LoginApi/authorityUrl
GET /api/LoginApi/authorityUrl/{tenantId}
GET /api/NotificationHubAccess/connectionString
GET /api/SalesHistory/GetSalesHistoryForCacheRegister/{storeNumber}/{posNumber}
GET /api/StoreApi
GET /api/UserNotifications
GET /api/UserProfiles
GET /api/signalraccess/api/accesstoken
GET /api/signalraccess/hub/{hubName}/accesstoken
GET /api/signalraccess/hub/{hubName}/information
GET /api/version
POST /api/NotificationHubAccess/register/{installationId}
PUT /api/UserNotifications/dismiss
PUT /api/UserNotifications/{id}/dismiss
Open service 52.232.19.237:443 · selfservicemonitorbackend.egretail-dev.cloud
2026-01-23 01:36
HTTP/1.1 301 Moved Permanently Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 01:36:43 GMT Server: Microsoft-IIS/10.0 Location: index.html Set-Cookie: ARRAffinity=48acf0709bf403e3643c99eaa23898057d24fe295bd6cb60b811b2a4ff6a671a;Path=/;HttpOnly;Secure;Domain=selfservicemonitorbackend.egretail-dev.cloud Set-Cookie: ARRAffinitySameSite=48acf0709bf403e3643c99eaa23898057d24fe295bd6cb60b811b2a4ff6a671a;Path=/;HttpOnly;SameSite=None;Secure;Domain=selfservicemonitorbackend.egretail-dev.cloud Request-Context: appId=cid-v1:9e556e91-ed9d-4a7c-9ef7-26a26ea35d21 X-Powered-By: ASP.NET
Open service 52.232.19.237:443 · selfservicemonitorbackend.egretail-dev.cloud
2026-01-11 06:58
HTTP/1.1 301 Moved Permanently Content-Length: 0 Connection: close Date: Sun, 11 Jan 2026 06:59:01 GMT Server: Microsoft-IIS/10.0 Location: index.html Set-Cookie: ARRAffinity=48acf0709bf403e3643c99eaa23898057d24fe295bd6cb60b811b2a4ff6a671a;Path=/;HttpOnly;Secure;Domain=selfservicemonitorbackend.egretail-dev.cloud Set-Cookie: ARRAffinitySameSite=48acf0709bf403e3643c99eaa23898057d24fe295bd6cb60b811b2a4ff6a671a;Path=/;HttpOnly;SameSite=None;Secure;Domain=selfservicemonitorbackend.egretail-dev.cloud Request-Context: appId=cid-v1:9e556e91-ed9d-4a7c-9ef7-26a26ea35d21 X-Powered-By: ASP.NET
Open service 52.232.19.237:80 · selfservicemonitorbackend.egretail-dev.cloud
2026-01-11 06:58
HTTP/1.1 301 Moved Permanently Content-Length: 0 Connection: close Date: Sun, 11 Jan 2026 06:59:01 GMT Location: https://selfservicemonitorbackend.egretail-dev.cloud/