Heroku
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d516b4a56516b4a56516b4a56516b4a56
Found 1 files trough .DS_Store spidering: /fonts
Open service 99.83.185.157:443 · test.copybrains.com
2026-01-09 21:55
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"3681be6d1745b4ea35a39a5e9cf1071f"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=KL3byy7tnrrXza00%2B5EWyV6lDq%2FmEDHlaZNmSuiJCFI%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1767995726"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=KL3byy7tnrrXza00%2B5EWyV6lDq%2FmEDHlaZNmSuiJCFI%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1767995726"
Server: Heroku
Set-Cookie: _baking_school_session=t2ImGcosiFKwze5kPmheXhvl6nTTZ6c7FhJLsLN1F2frk2BFzoW4xMiHX0CiFwg9IqbYYlczQHTn2a8Zx0c3Dzt%2BabExORKbd2zuwpOL71qArNWZMz7XIZ%2BWwa4I78DM1jkfzny%2FdUBVL3dMRgqYiQxs5sheXMjrzieAUk55sEBgCT4%3D--%2BJcVTzZkqddjwGnU--c%2F29ZTkNBjX82T2MEChLZg%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 6dc93897-3638-23d7-c270-c4d96e0e2b89
X-Runtime: 0.047792
X-Xss-Protection: 1; mode=block
Date: Fri, 09 Jan 2026 21:55:26 GMT
Connection: close
Transfer-Encoding: chunked
Open service 52.223.53.203:443 · test.copybrains.com
2026-01-09 08:43
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"ebee2fecd6fb98fe03d8a63cea70cb3b"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=VTKNdwWHDPpUUfdS7dC16kJK%2BvUJdNlQ2i8KYjvYCqU%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1767948226"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=VTKNdwWHDPpUUfdS7dC16kJK%2BvUJdNlQ2i8KYjvYCqU%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1767948226"
Server: Heroku
Set-Cookie: _baking_school_session=Sv1Rv6Ry%2FEr%2BU9x8wUPOFSDVU%2F0F26FibeRuKC%2BKxNN8HvO21ZH4lJrls8cbfp44Wx1KOwP3cUk8Bgh%2F1qkyW%2B3%2FUcCe9imBCyS5dPHEIq01jd7JUEr2RcFmrl6EI429uZaCX1u45FJB8jW3%2BH%2FXTyHmOSpQAHC3GCewBbSZZaUiGnU%3D--o5sNc3LfPakDJdKS--bnuDDrnAzwc8OsIuWDLpEA%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: cfa24e5a-a780-aeee-fb5b-fb3cc277caba
X-Runtime: 0.046744
X-Xss-Protection: 1; mode=block
Date: Fri, 09 Jan 2026 08:43:46 GMT
Connection: close
Transfer-Encoding: chunked
Open service 99.83.185.157:443 · test.copybrains.com
2026-01-02 16:27
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"26f70501c116379cc7067b0c525333ee"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=KBCbkxsojLDEunGqbNOtUVzNkGP8xjEA%2F3qztPfXDfs%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1767371277"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=KBCbkxsojLDEunGqbNOtUVzNkGP8xjEA%2F3qztPfXDfs%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1767371277"
Server: Heroku
Set-Cookie: _baking_school_session=DXbtsQbw8DlafuxYUFiOs68a%2FZ42TP20gjCDBWWw8QNoqCxBp8YQHgBa0K5Ovkg2Polsb58JEvOi%2Fv9seB1vWUrZDjxLz75Sca8ggY9UQ66luogvs5Enk958fR%2BoGI25ykmAZpMCY9klpCRuxRXJ85%2FTY08gZd%2BtLeac%2Bq%2FcH1xefDY%3D--MmXZhWyK2SbjNI58--hgu%2Fz%2FcSTDKR9NiUYAKhdg%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 12324b98-b95c-d78b-9b86-1be6bbc82d0b
X-Runtime: 0.049861
X-Xss-Protection: 1; mode=block
Date: Fri, 02 Jan 2026 16:27:57 GMT
Connection: close
Transfer-Encoding: chunked
Open service 99.83.185.157:443 · test.copybrains.com
2025-12-30 14:41
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"f6d039e8b00e3e61efef2539a5e707fc"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=LDgdulAXGUbgJJcdu0l3HxsARwnrwObc%2BjXYBKr86JQ%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1767105699"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=LDgdulAXGUbgJJcdu0l3HxsARwnrwObc%2BjXYBKr86JQ%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1767105699"
Server: Heroku
Set-Cookie: _baking_school_session=8yAXk6Vw%2B5vkDh5prSOsu2DJO%2FPqPsbs3s8rwuKb5w9cf8hhhzApuFau29ulFyLV6batWQoRqt0VAsHROBTstT1ytOBMOTdwvPfl9JOViR%2FHc0o3GPH7h6PhDglsoKeFMrDZ%2BJqwZlLppZAktP%2FPyHNPOvO7dBnci8jTYvzCV4TxqTo%3D--oEBmc2bKQTPlXh8T--blxdpLg0mNRwbuYGYJhnNw%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: ca68130b-da60-a70b-e1ad-d985c943ac62
X-Runtime: 0.043838
X-Xss-Protection: 1; mode=block
Date: Tue, 30 Dec 2025 14:41:39 GMT
Connection: close
Transfer-Encoding: chunked
Open service 99.83.185.157:443 · test.copybrains.com
2025-12-23 09:48
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"10f28bcfc4c4e03de27a5242041afe1e"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=H7WEDj7tipf34a05c7oneqvlGOX52Eu4ZlF1rQ0q4eE%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1766483306"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=H7WEDj7tipf34a05c7oneqvlGOX52Eu4ZlF1rQ0q4eE%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1766483306"
Server: Heroku
Set-Cookie: _baking_school_session=mI4IWTnGkj8UprmrAYaySfWjxUKiC%2FKEzqnU1qRWOG1WaOQoPAC52a%2FmKAKyFBJUihq6APlgqPUlxjcKHP9ODdPGpiIop%2FasL8LrVsWrhU03XF9p%2BzCDmX1HBV40utigulfxi86oS9ZbTWGoUlOJ%2B1aPtZAP4bdLK83AVLsFrXuuA1E%3D--o%2ByeyuOanGWl3MmH--nQdrEvj3XUccVR%2BQKq6k7Q%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: f162fd9a-e215-4869-0d1c-e91b93a51a76
X-Runtime: 0.046171
X-Xss-Protection: 1; mode=block
Date: Tue, 23 Dec 2025 09:48:26 GMT
Connection: close
Transfer-Encoding: chunked
Open service 99.83.185.157:443 · test.copybrains.com
2025-12-21 09:29
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"6868f51b6ee2770663a054e7cd1cfcb7"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=QHP%2F45twmC07HEZ1%2FwowE7WvdXOxZd3eBeH%2BIAei%2BA0%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1766309377"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=QHP%2F45twmC07HEZ1%2FwowE7WvdXOxZd3eBeH%2BIAei%2BA0%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1766309377"
Server: Heroku
Set-Cookie: _baking_school_session=te%2B5fYz3CwDxtL5N56W5oVC8qOELNl5oWIM5Ld0VvXM99ToKhZDq8BbGJhhp2WeJeTobwxMkOaYqdWvnJjtYu7TaD4QQ%2FxWiIBRD9zjJd2CpuNE1wGJeHRIXnqD6M%2BW48dPfGKbYOpKRlCZ4uLS1bNWeqi4HxjrLUcA%2F0XM3pkpRd6s%3D--a75uOYog0d7qujRl--FJmXAltJNCM2rk6OcmYrWg%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: bc25f754-4829-ccfe-a061-89c314875422
X-Runtime: 0.048409
X-Xss-Protection: 1; mode=block
Date: Sun, 21 Dec 2025 09:29:37 GMT
Connection: close
Transfer-Encoding: chunked
Open service 99.83.185.157:443 · test.copybrains.com
2025-12-19 10:53
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"daf3e02ee258d0b8eda294fd3dabaeb3"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=BRT3896z7VEaUEHp8%2BUY7Mi%2Bv3oh5LkblChs2GKd07Q%3D\u0026sid=812dcc77-0bd0-43b1-a5f1-b25750382959\u0026ts=1766141599"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=BRT3896z7VEaUEHp8%2BUY7Mi%2Bv3oh5LkblChs2GKd07Q%3D&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&ts=1766141599"
Server: Heroku
Set-Cookie: _baking_school_session=b5p58DHYuMFb%2Bs0V3iNImDVfU8BVAg6Dur5eprPepgdX8%2FU8lpXWhsgekOvZPj6Q95ZciSpc7gs6XtOIKjY494JyfbIrGHw3iomom6RcrNzrlBcdGBIs7kpvrM1Q8B5weHYsAUOuwed9kwlRm4AqMiE%2BohIHtJQb1IlpZJPg91bU5MA%3D--C3wVrQnbgSGolTk6--UQxULVijnNEIsfBgxRInMQ%3D%3D; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: dd4a431f-f612-ee3b-6146-4cb735a29c12
X-Runtime: 0.037363
X-Xss-Protection: 1; mode=block
Date: Fri, 19 Dec 2025 10:53:19 GMT
Connection: close
Transfer-Encoding: chunked