Heroku
tcp/443 tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1a8bcc6e54d737e0f0e83bdb19b0673b1c0238fb0c7473327
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html - sample paths:
DELETE /user/delete-profile-pic
GET /admin/all-user
GET /admin/call-cron
GET /admin/clear-app-cache
GET /journal
GET /journal/id/{getId}
GET /public/health-check
GET /user
GET /user/{city}
POST /admin/create-admin
POST /user/login
POST /user/signup
PUT /user/set-profile-pic
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1a8bcc6e54d737e0f0e83bdb19b0673b1c0238fb0c7473327
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html - sample paths:
DELETE /user/delete-profile-pic
GET /admin/all-user
GET /admin/call-cron
GET /admin/clear-app-cache
GET /journal
GET /journal/id/{getId}
GET /public/health-check
GET /user
GET /user/{city}
POST /admin/create-admin
POST /user/login
POST /user/signup
PUT /user/set-profile-pic
Open service 13.248.132.87:443 · www.digvijay.software
2026-01-09 18:30
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 09 Jan 2026 18:30:20 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=PnkVm2cXHj9BAN%2FGRR5FecfUQI8kLALOg%2FJ54NqfXHY%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767983420"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=PnkVm2cXHj9BAN%2FGRR5FecfUQI8kLALOg%2FJ54NqfXHY%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767983420"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2026-01-09 12:48
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 09 Jan 2026 12:49:18 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=5DCEVgjRX78j3rU%2FiD2JLoSjZur88ErP3vumIZIm2M8%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767962958"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=5DCEVgjRX78j3rU%2FiD2JLoSjZur88ErP3vumIZIm2M8%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767962958"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 13.248.132.87:443 · www.digvijay.software
2026-01-02 21:56
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 02 Jan 2026 21:56:05 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=LnkonIozGSOgE7Yenff%2FeVC14aweSRViDxDzLvXLK6Y%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767390966"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=LnkonIozGSOgE7Yenff%2FeVC14aweSRViDxDzLvXLK6Y%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767390966"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2026-01-02 08:21
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 02 Jan 2026 08:21:46 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2BXbO0o6wXhJY85xD8So91DCxGSYLAyQ1u2xN%2FkqgvLM%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767342106"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2BXbO0o6wXhJY85xD8So91DCxGSYLAyQ1u2xN%2FkqgvLM%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767342106"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2025-12-30 14:43
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Tue, 30 Dec 2025 14:43:39 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=hHTzLwUQ41%2Br1kyENI4IMhkm90fwU0VtiJAh8o95k14%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767105819"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=hHTzLwUQ41%2Br1kyENI4IMhkm90fwU0VtiJAh8o95k14%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767105819"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2025-12-23 09:41
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Tue, 23 Dec 2025 09:41:22 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=yvtZegR0wgS4NE3GeGgBK8CeC8iVsFUtYBp4cj65Hmk%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766482882"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=yvtZegR0wgS4NE3GeGgBK8CeC8iVsFUtYBp4cj65Hmk%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766482882"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 13.248.132.87:443 · www.digvijay.software
2025-12-23 04:19
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Tue, 23 Dec 2025 04:19:26 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=xVxfqxQFOFn%2BDYNAXBpg%2BNXDLzPgrxFdeDQqzUjhvQQ%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766463567"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=xVxfqxQFOFn%2BDYNAXBpg%2BNXDLzPgrxFdeDQqzUjhvQQ%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766463567"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 13.248.132.87:443 · www.digvijay.software
2025-12-21 10:10
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Sun, 21 Dec 2025 10:10:46 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=P%2BHtnq6d0OLF5lnl8XlFbK68IdPpBNhzesdv1so7B7A%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766311847"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=P%2BHtnq6d0OLF5lnl8XlFbK68IdPpBNhzesdv1so7B7A%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766311847"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2025-12-21 04:40
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Sun, 21 Dec 2025 04:40:57 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=4x6Xqu0tl2Ld%2Fg1e3pvHUlzpFx7h3%2BphlpOWc%2FE2pv8%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766292058"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=4x6Xqu0tl2Ld%2Fg1e3pvHUlzpFx7h3%2BphlpOWc%2FE2pv8%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766292058"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 75.2.97.79:80 · www.digvijay.software
2025-12-19 02:38
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 19 Dec 2025 02:38:38 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=ak%2BKiV96rYo1D1rbAim%2F2Y%2FBzRj5MRxsuVvs9vR7K6w%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766111918"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=ak%2BKiV96rYo1D1rbAim%2F2Y%2FBzRj5MRxsuVvs9vR7K6w%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766111918"
Server: Heroku
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs
Open service 13.248.132.87:443 · www.digvijay.software
2025-12-19 00:06
HTTP/1.1 404 Not Found
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Content-Length: 113
Content-Type: text/plain;charset=UTF-8
Date: Fri, 19 Dec 2025 00:06:26 GMT
Expires: 0
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Pragma: no-cache
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=QP6IUjrVXf4Y9ixAt4cQB5EchmO0ttt6eHDe8SFBcfA%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766102787"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=QP6IUjrVXf4Y9ixAt4cQB5EchmO0ttt6eHDe8SFBcfA%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766102787"
Server: Heroku
Strict-Transport-Security: max-age=31536000 ; includeSubDomains
Vary: Origin
Vary: Access-Control-Request-Method
Vary: Access-Control-Request-Headers
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Xss-Protection: 0
Connection: close
The endpoint you are looking for does not exist. Please visit the Swagger documentation at digvijay.software/docs