The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Additionally the GIT credentials are present and could give unauthorized access to source code repository of private projects.
Severity: critical
Fingerprint: 2580fa947178c883cda65107b6f0882eb5010f354c5d91ec33bd1e39ad765ce3
[fetch] recurseSubmodules = false [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:rL8J6isRevj8ajDuvgzZ@gitlab.com/echojoycards/zaggnetwork-website.git fetch = +refs/heads/*:refs/remotes/origin/*
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09cd9e41e64d9e41e641bdb7d744f8c976f5e80150af40feaa6
Found 97 files trough .DS_Store spidering: /assets /email.php /favicon /images /images/2.png /images/About-case-1.png /images/bg-new.png /images/bg1.png /images/bg1.svg /images/chart-lavendar-a.png /images/chart-lavendar-b.png /images/cog.jpg /images/colors.png /images/currency.png /images/em1.png /images/eth.jpg /images/event.jpg /images/exports /images/features /images/flag-br.jpg /images/flag-ch.jpg /images/flag-en.jpg /images/flag-fr.jpg /images/gbrl /images/giftcards.png /images/gkff.png /images/graph-lavendar-a.png /images/homepage-1.svg /images/homepage-2.svg /images/homepage-3.png /images/homepage-3.svg /images/homescreen-art.svg /images/lavender-icon-a.png /images/lavender-icon-b.png /images/lavender-icon-c.png /images/lavender-icon-d.png /images/lo.jpg /images/lobelia /images/logo-full-white.png /images/logo-white.png /images/logo.png /images/loyalty.png /images/mobile-app-a.png /images/new-dark.png /images/new-dark.svg /images/new-light.png /images/new-light.svg /images/new-logo.png /images/new_logo.svg /images/P2P-1.svg /images/P2P-1@3x.png /images/partner-md-a.png /images/partner-md-b.png /images/partner-md-c.png /images/partner-md-d.png /images/partner-md-e.png /images/partner-sm-a.png /images/partner-sm-b.png /images/partner-sm-c.png /images/partner-sm-d.png /images/partner-xs-a.png /images/partner-xs-b.png /images/partner-xs-c.png /images/partner-xs-d.png /images/partner-xs-e.png /images/partner-xs-f.png /images/pie-chat-1.png /images/ppt.6.png /images/ppt.7.png /images/preloader.gif /images/protocol.svg /images/r.svg /images/ron.png /images/sam.jpg /images/scr1.svg /images/social /images/TD.png /images/team /images/team-background.png /images/team-bg-1.png /images/Use of Funds.png /images/usecases /images/ve.png /images/web-screen.svg /images/web-screen1.svg /images/zaggle /images/zaggle-100M.png /images/zaggle-25musers.png /images/zaggle-6kM.png /images/zaggle-7-years.png /images/zaggle-png-logo.png /index.html /sitemap.xml /transaction-email.html /ZAGG Light paper_060718.pdf /ZAGG white paper tech_310718.pdf /ZAGG-white-paper.pdf