Apache
tcp/443 tcp/80
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65226f57da80
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = http://bitbucket.org/webcrafterspl/jns-web fetch = +refs/heads/production:refs/remotes/origin/production [branch "production"] remote = origin merge = refs/heads/production [user] name = bitbucket-pipelines email = commits-noreply@bitbucket.org [push] default = current [http "http://bitbucket.org/webcrafterspl/jns-web"] proxy = http://localhost:29418/
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65226f57da80
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = http://bitbucket.org/webcrafterspl/jns-web fetch = +refs/heads/production:refs/remotes/origin/production [branch "production"] remote = origin merge = refs/heads/production [user] name = bitbucket-pipelines email = commits-noreply@bitbucket.org [push] default = current [http "http://bitbucket.org/webcrafterspl/jns-web"] proxy = http://localhost:29418/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2026-01-02 05:02
HTTP/1.1 301 Moved Permanently Date: Fri, 02 Jan 2026 05:02:46 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2026-01-01 20:10
HTTP/1.1 301 Moved Permanently Date: Thu, 01 Jan 2026 20:10:18 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2025-12-30 12:42
HTTP/1.1 301 Moved Permanently Date: Tue, 30 Dec 2025 12:42:26 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2025-12-22 19:19
HTTP/1.1 301 Moved Permanently Date: Mon, 22 Dec 2025 19:19:28 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:80 · www.jobnonstop.pl
2025-12-22 05:50
HTTP/1.1 301 Moved Permanently Date: Mon, 22 Dec 2025 05:50:19 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress - Really Simple Security Location: https://www.jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2025-12-22 05:04
HTTP/1.1 301 Moved Permanently Date: Mon, 22 Dec 2025 05:04:58 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2025-12-21 00:32
HTTP/1.1 301 Moved Permanently Date: Sun, 21 Dec 2025 00:32:09 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/
Open service 188.128.195.180:80 · www.jobnonstop.pl
2025-12-20 06:20
HTTP/1.1 301 Moved Permanently Date: Sat, 20 Dec 2025 06:20:38 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress - Really Simple Security Location: https://www.jobnonstop.pl/
Open service 188.128.195.180:443 · www.jobnonstop.pl
2025-12-19 00:39
HTTP/1.1 301 Moved Permanently Date: Fri, 19 Dec 2025 00:39:55 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: Apache Access-Control-Allow-Methods: GET,POST Access-Control-Allow-Headers: Content-Type, Authorization Content-Security-Policy: upgrade-insecure-requests; Cross-Origin-Embedder-Policy: unsafe-none; report-to='default' Cross-Origin-Embedder-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Opener-Policy: unsafe-none Cross-Origin-Opener-Policy-Report-Only: unsafe-none; report-to='default' Cross-Origin-Resource-Policy: cross-origin Permissions-Policy: accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000 X-Content-Security-Policy: default-src 'self'; img-src *; media-src * data:; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none X-Redirect-By: WordPress Location: https://jobnonstop.pl/