Apache
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37dd2db492eb743ebbd7f0c0cdef2a19a5e28dcda
GraphQL introspection enabled at /graphql Types: 55 (by kind: ENUM: 10, INPUT_OBJECT: 6, OBJECT: 33, SCALAR: 6) Operations: - Query: Query | fields: me, product, products, shopInfo, shoppingCart - Mutation: Mutation | fields: addToCart, loginWeb, removeFromCart, removeFromWaitlist, updateCartQuantity Directives: deprecated, include, skip (total: 3)
Open service 151.101.130.132:443 · shopstatementclothing.com
2026-01-09 06:04
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 3e40ce49-e1b9-4ab5-b4dd-7c28bc2a8f2c Set-Cookie: laravel_session=eyJpdiI6IkgyQ1kvbkg2OVR2WGZSaTQyT1E0MkE9PSIsInZhbHVlIjoiSXRmQVN3NGFoa0ZzQnl4amJTUEpzVWhHdXc1TFVXZTZBdzlsMXVhNGhVeXpFc2dNM0w2V0VsU21aSUJwakFEc3ljV3dKRUJTV1NTMjR6Ym95YWJiZjZjdDgrSnZXMVA4WVl3dW85b0k5d1VHdWpyclMyMXFDcE1VQVNzYWNDS3kiLCJtYWMiOiIwMTc4MzcxMWFhZTkzZDIxODdiNjFkNDY0M2UyYmZmZjAyNTJhMzg2YzU2ODQxNDQ2NTM3YzhlYjNmYTcxOGIyIiwidGFnIjoiIn0%3D; expires=Tue, 10 Mar 2026 06:05:02 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: 1fV8W4di9kPu3NQMl2kNAPr4ojE1OeGO3uZFQllr=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%3D; expires=Tue, 10 Mar 2026 06:05:02 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Fri, 09 Jan 2026 06:05:02 GMT X-Served-By: cache-chi-klot8100118-CHI, cache-yyz4553-YYZ X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1767938702.219529,VS0,VE235 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shopstatementclothing.com
2026-01-02 04:31
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: df7a388a-f2fd-42c5-a2e9-1b6d0be1349a Set-Cookie: laravel_session=eyJpdiI6ImYxVXZRbnVPV3F6RmpxaWFWTTFwdXc9PSIsInZhbHVlIjoiY05pUU5UZlBSamVvS0N0cXg4R3dFS2RxeHR6S2dSZjg2QWxUaThYUjhGUk9XS2xhZVJXei9PbzZWR0tOZjdjblhob0NsMm9qMG5UdVpQN2dub0dSY3FXNFdzcDJua2tKRXpheGlzQXFHN2U4OWpkVExXOWJpWGFJRUNxOVMxVUQiLCJtYWMiOiIxMTVmNmYzNDBlYzlkMjc1OTYxYjIwMzVjMzAwNDQzNGJiZDM0MDIxNjlhNTg2YTM1NzAzNjUxNTI0MzM0MWQ3IiwidGFnIjoiIn0%3D; expires=Tue, 03 Mar 2026 04:31:06 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: ZF0Z6wDMCBP1FGiJFSLkJ1E7njUodia8vqSqxmHB=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%3D; expires=Tue, 03 Mar 2026 04:31:06 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Fri, 02 Jan 2026 04:31:06 GMT X-Served-By: cache-chi-kigq8000130-CHI, cache-lga21964-LGA X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1767328266.169027,VS0,VE279 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shopstatementclothing.com
2025-12-22 19:02
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: fbdcbf86-7406-4dd1-b524-3a55f34b1f44 Set-Cookie: laravel_session=eyJpdiI6Ii9IOVlESEpRbUlUSHNmVzZYWW9QNVE9PSIsInZhbHVlIjoiQWF3Z1FIUEdHN3RTdUhQR1pKYmU0VVRtakluZFJxWVZ3dkJZQ1hYZ09VSXArcUJnQUhxTi9LSXE4cTNjNit3RWNqbEdXVzRWclZrbVNLVElvL0NacFJ0UFVUN0JZd0Y2OEhSRUlpUytLSzlhZkx4RXBjMXdHOUs1MExaRCtGd08iLCJtYWMiOiI4MDJkMTIzYjM5MjVlODM1NWU4NzUxYTFlMTViYTQwNjViMjFhNTk1YjRjYTBkNTVmNjJkMzJhYjk0NWM5ZjE2IiwidGFnIjoiIn0%3D; expires=Fri, 20 Feb 2026 19:02:30 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: 9S1nudp2lFaKLwXeklh4lAbBqJrjbOcwi6SY3X5f=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%3D; expires=Fri, 20 Feb 2026 19:02:30 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Mon, 22 Dec 2025 19:02:30 GMT X-Served-By: cache-chi-kigq8000112-CHI, cache-rtm-ehrd2290021-RTM X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766430150.045994,VS0,VE400 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shopstatementclothing.com
2025-12-20 19:48
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 32dcfde4-d083-412a-8a6a-036f74f272d8 Set-Cookie: laravel_session=eyJpdiI6Ildsb1FabFlSUERMSDJnQ0lhTFhYbEE9PSIsInZhbHVlIjoiWno2QU5reTF0RWliRnlKbkVyUm0wRXFDaUJXQm5ya3BZa3FKc0pXMzNIWHhPaUpIWWVOTTF5c1BRMzBqOUhib2FjOVhxM2JMcUx6REYyWHdEYzM3cTJJQ3FoNndxZGFFdEZWcldLUWNvVmx1SzA4azdQVmRtWGV6ZHZXMjhLbFEiLCJtYWMiOiJmNTZmMTk5Y2ZhZWM2NTQxNzMyYTBlZWIzYjYxNTgzNWQ4M2UzZGEyMWU1ZjA0Y2MxMmY4YzAzYjQ3ZTNjZGIzIiwidGFnIjoiIn0%3D; expires=Wed, 18 Feb 2026 19:48:48 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: FflUHJ5VtC5qFehepRgTvoYTqQ4HUvnhBFh7NOP6=eyJpdiI6ImFhc3c5U1pDcnNhTExwT2M5RStNbmc9PSIsInZhbHVlIjoiakl5NGZNRzRGNWNSUG5kclV4NkVxaVdqaWdWOXl4eTV5WlQ5QmhzS1RzdDJaM3VyWDE5VlArQ2RoalFHOERqa0o5R2pRYXhIa1BQM0pFSlpVQ3Y1K3RSSVQ2bytuaE1LTVV4S1R1OXc3VVJ0WDNIdGh5THk5ZGQ2MzlpclM4cmJxWS9mQlhUQ042MnJXbGtXMGMzaW1sRnNIemlmTjhFVkQwemFpMnlCanFrU3dkQXdvTWpJK2ZpTXpWSkVGL2tPWmhGeDFmdEVrMmVIelQwTm1jR3VqdGJkZ3F4SGtxeWJWci9BS280ZmZBU0FMQ29CWjNvRllvZXJST3VFMmpTV3A1RVpGQW1MOVVLbStFcTgxSGNrZlV5Tyt4ckNnNVhyZk42MmwrWXNac3BockIrNFloRjNUZThzaTIwTlg5em1CK0hTR25BZW9POGxKdXZvMzl6YjBlWTRXeGsxbm85azN6SExZc2pXZEg5RUNRYkduOEVDSnByNExvdWpmblhDbnZRL004aTY2N3BqTENrWUJzYmxUWUJGamJ5TDNWU3RsM3JkeGhvaHNzdmFDcWI5SzVIR0JoNVBrNHVqUW8xV1h6ZjVaWW1hR216cU5sYzBaNXZkYkdlMEVYc1d6K09ZQkRqQk5UN2JUQVBkdzd6SFIvUVpMUEJrTlhaZ3ZmQ1QiLCJtYWMiOiI3OTAwN2U5ZTJjMTg3MzI4YWIxMWIyZDc5NzgzOTVmZjk0YWJhZGRkZmIzODhjMzFlMGFkMGJmZTQ0ODQzZjI5IiwidGFnIjoiIn0%3D; expires=Wed, 18 Feb 2026 19:48:48 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Sat, 20 Dec 2025 19:48:48 GMT X-Served-By: cache-chi-kigq8000171-CHI, cache-sin-wsat1880033-SIN X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766260128.819302,VS0,VE391 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked
Open service 151.101.130.132:443 · shopstatementclothing.com
2025-12-19 01:30
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset=UTF-8 Server: Apache Cache-Control: no-cache, private Content-Security-Policy-Report-Only: default-src 'self'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; img-src * data: blob: android-webview-video-poster:; font-src * data:; connect-src * blob:; media-src * blob:; frame-src * blob: navigate:; worker-src 'self' blob:; frame-ancestors *; form-action 'self' www.facebook.com tr.snapchat.com pos.commentsold.com; object-src 'none'; manifest-src *; child-src 'self' blob:; report-uri https://o43862.ingest.sentry.io/api/239693/security/?sentry_key=deb2fc6b7d104f7ea6241356c26c14d0 x-robots-tag: all X-Request-Id: 39ada316-dd5e-4597-a712-804280ec2209 Set-Cookie: laravel_session=eyJpdiI6IkFtTTBwZGV0MlFxSVBFNlVBVTVMcmc9PSIsInZhbHVlIjoiT2ZWRC9tMGtWWXVDWFZ6OFlKczRuN09tUHU1MlFjMDlObnlxUjEzZjhHMHRvUFdCNkFYSlFzcXdreHVhc3lkY2t4T3hiS05YL256MHlFVnV6L21lT2RzWVVpNktSRWYxOWExeWhyUWNMWURmc2ROMC9rZjdCYjRLZ29GQVRVVmEiLCJtYWMiOiI4YWE0ZjdkZmY4YTcyNWE1OGU3OWE5NTY3NGM5ZTUxNjdkMjIzYzkyOGE2MTdhNjc4ZTg0ZWRlY2JmOWRhNDllIiwidGFnIjoiIn0%3D; expires=Tue, 17 Feb 2026 01:30:27 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Set-Cookie: KZbNFfQztb9LPG4mHImZvC1IkRnoF1As9xoveJ3V=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%3D; expires=Tue, 17 Feb 2026 01:30:27 GMT; Max-Age=5184000; path=/; secure; httponly; samesite=none Access-Control-Allow-Origin: * Access-Control-Allow-Methods: POST, GET, OPTIONS, DELETE, PUT Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token, Accept-Encoding Accept-Ranges: bytes Via: 1.1 varnish, 1.1 varnish X-Cacheable: NO:Set-Cookie Date: Fri, 19 Dec 2025 01:30:27 GMT X-Served-By: cache-chi-klot8100043-CHI, cache-fra-eddf8230133-FRA X-Cache: MISS, MISS X-Cache-Hits: 0, 0 X-Timer: S1766107827.292544,VS0,VE406 Vary: Accept-Encoding Strict-Transport-Security: max-age=900 transfer-encoding: chunked