cloudflare
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3788853d58933e49770c9abd2e0b2f15c7cebd876
GraphQL introspection enabled at /graphql Types: 43 (by kind: ENUM: 2, INPUT_OBJECT: 3, OBJECT: 34, SCALAR: 4) Operations: - Query: Query | fields: arestinapi, filterGrid, generatePDF, getRecords, locateorthoapi - Mutation: Mutation | fields: apEnrollSchool, apFacultyRegister, apInternalFacultyLogin, apProfileUpdate, apStudentRegister Directives: deprecated, include, skip, specifiedBy (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa35d4f15f0b9b4c2f410b3a24df608f95b518cb827
GraphQL introspection enabled at /graphql Types: 50 (by kind: ENUM: 2, INPUT_OBJECT: 4, OBJECT: 39, SCALAR: 5) Operations: - Query: Query | fields: arestinapi, filterGrid, generatePDF, getRecords, locateorthoapi - Mutation: Mutation | fields: apEnrollSchool, apFacultyRegister, apInternalFacultyLogin, apProfileUpdate, apStudentRegister Directives: deprecated, include, skip, specifiedBy (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3670f3d5b7293ab196ce3880cda074d8688c3a750
GraphQL introspection enabled at /graphql Types: 49 (by kind: ENUM: 2, INPUT_OBJECT: 4, OBJECT: 38, SCALAR: 5) Operations: - Query: Query | fields: arestinapi, filterGrid, generatePDF, getRecords, locateorthoapi - Mutation: Mutation | fields: apEnrollSchool, apFacultyRegister, apInternalFacultyLogin, apProfileUpdate, apStudentRegister Directives: deprecated, include, skip, specifiedBy (total: 4)
Open service 172.64.146.83:443 ยท thermage-ca.bhc-dev.com
2026-01-22 23:32
HTTP/1.1 200 OK Date: Thu, 22 Jan 2026 23:32:29 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close CF-RAY: 9c22d9d66876cb4e-EWR Cache-Control: no-cache,no-store Expires: -1 Pragma: no-cache Set-Cookie: EPiStateMarker=true; path=/; secure Set-Cookie: .AspNetCore.Antiforgery.VyLW6ORzMgk=CfDJ8FrwwsjkvzJBn6XSxTgtX6g19cscjc7fuoLGhfltD8V0Ut6BKeozWpOYUuGheWiWqRTEWm_bGwXH6aKHlC6TcWSgYLKNKB-qVcc4_gbP1z4_8pTjjkpLsla40a6xCa5Vrexe-PMtEDXkQMbzlcv60IM; path=/; secure; samesite=strict; httponly Set-Cookie: .AspNetCore.Session=CfDJ8FrwwsjkvzJBn6XSxTgtX6hdD2%2BrKltd%2FBrwoOiiisjosawrnSWOzMlCLK%2BpnqzIphNL7NYZlPbXKI1TBUOQmDaXWnfDh9MhZVLVxT2om2RSgUQlWqEq2NREvM3dVk8mb8bxNHp0K1TmwuIjeekMOrdTHpHDlteSWBPphlJjFH4O; path=/; secure; samesite=lax; httponly Set-Cookie: ARRAffinity=c7644fa17dd01381fbce232a37dceeb10348c024afd91f9a7cbc481bea664b20;Path=/;HttpOnly;Secure;Domain=thermage-ca.bhc-dev.com Set-Cookie: ARRAffinitySameSite=c7644fa17dd01381fbce232a37dceeb10348c024afd91f9a7cbc481bea664b20;Path=/;HttpOnly;SameSite=None;Secure;Domain=thermage-ca.bhc-dev.com Request-Context: appId=cid-v1:57fb5697-4cae-47aa-8730-2b37446f8bb7 cf-cache-status: DYNAMIC Server: cloudflare alt-svc: h3=":443"; ma=86400