GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e28f4ec8cc7eb5e490ec4447ae9dda9519bd618a85
GraphQL introspection enabled at /graphql/api Types: 39 (by kind: ENUM: 5, INPUT_OBJECT: 5, OBJECT: 23, SCALAR: 6) Operations: - Query: Query | fields: channels, checkoutConfigs, countriesInfo, countriesInfoGroupByContinent, ecsCountries - Mutation: Mutation | fields: updateCheckoutConfigs, updateModuleActivation, updatePaymentLimitConfigs, updateVoucherConfig Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e28f4ec8cc7eb5e490527b59b62726d671c2b1c84d
GraphQL introspection enabled at /graphql/api Types: 39 (by kind: ENUM: 5, INPUT_OBJECT: 5, OBJECT: 23, SCALAR: 6) Operations: - Query: Query | fields: channels, checkoutConfigs, countriesInfo, countriesInfoGroupByContinent, languages - Mutation: Mutation | fields: updateCheckoutConfigs, updateModuleActivation, updatePaymentLimitConfigs, updateVoucherConfig Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e28f4ec8cc7eb5e490527b59b62726d67131ba3cc5
GraphQL introspection enabled at /graphql/api Types: 39 (by kind: ENUM: 5, INPUT_OBJECT: 5, OBJECT: 23, SCALAR: 6) Operations: - Query: Query | fields: channels, checkoutConfigs, countriesInfo, countriesInfoGroupByContinent, languages - Mutation: Mutation | fields: updateCheckoutConfigs, updateModuleActivation, updatePaymentLimitConfigs, updateVoucherConfig Directives: deprecated, include, skip, specifiedBy (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2e98d6bb4961adc387124243e42eb23c99c4c9f9d
GraphQL introspection enabled at /graphql/api Types: 38 (by kind: ENUM: 4, INPUT_OBJECT: 5, OBJECT: 23, SCALAR: 6) Operations: - Query: Query | fields: channels, checkoutConfigs, countriesInfo, countriesInfoGroupByContinent, languages - Mutation: Mutation | fields: updateCheckoutConfigs, updateModuleActivation, updatePaymentLimitConfigs, updateVoucherConfig Directives: deprecated, include, skip, specifiedBy (total: 4)
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d600bff2b556d62ba75c78019fe7b2fcf06f1734f97
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
GET /chatbot/chat
GET /chatbot/chat/{chatSessionId}/messages
GET /healthcheck
GET /healthcheck/healthcheck
GET /internal/nav
GET /internal/nav/whoami
GET /systemmonitor
GET /systemmonitor/details
GET /systemmonitor/index
POST /chatbot/ask
POST /user/persona
POST /user/session
POST /user/theme
PUT /user/session/keepAlive
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d602624b7f739d79c37630098cb3783eb3537e2008c
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths: GET /healthcheck GET /healthcheck/healthcheck GET /internal/nav GET /internal/nav/whoami GET /systemmonitor GET /systemmonitor/details GET /systemmonitor/index POST /chatbot/ask POST /user/persona POST /user/session POST /user/theme PUT /user/session/keepAlive
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d602624b7f739d79c37c505e7550b4d07809c47202e
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths: GET /healthcheck GET /healthcheck/healthcheck GET /systemmonitor GET /systemmonitor/details GET /systemmonitor/index POST /chatbot/ask POST /user/persona POST /user/session POST /user/theme PUT /user/session/keepAlive
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d602624b7f739d79c37c505e7550b4d078005cafc9f
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths: GET /healthcheck GET /healthcheck/healthcheck GET /systemmonitor GET /systemmonitor/details GET /systemmonitor/index POST /chatbot/ask POST /chatbot/getUserInfo POST /chatbot/streamchat POST /user/persona POST /user/session POST /user/theme PUT /user/session/keepAlive
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d602624b7f739d79c37c505e7550b4d0780d3e5db94
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths: GET /healthcheck GET /healthcheck/healthcheck GET /systemmonitor GET /systemmonitor/details GET /systemmonitor/index POST /user/persona POST /user/session POST /user/theme PUT /user/session/keepAlive
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b3490ec6ca2
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetMobilePrefix
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/GetTranslation_Languages
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/FAQ_Already_Invited
GET /Content/FAQ_Family_Invitation
GET /Content/FAQ_Friend_Invitation
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/PrivacyPolicyExplora
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /FAQ/CheckUserInAzure
GET /FAQ/GetFAQs/{type}
GET /FAQ/TestUser
GET /FAQ/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /HomeCard/GetHomeCardImage/{idCard}
GET /HomeCard/GetHomeCards
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /FAQ/InsertOrUpdateFAQ
POST /HomeCard/InsertOrUpdateHomeCard
POST /HomeCard/UploadHomeCardImage
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b34289ba9f6
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/FAQ_Already_Invited
GET /Content/FAQ_Family_Invitation
GET /Content/FAQ_Friend_Invitation
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/PrivacyPolicyExplora
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /FAQ/CheckUserInAzure
GET /FAQ/GetFAQs/{type}
GET /FAQ/TestUser
GET /FAQ/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /HomeCard/GetHomeCardImage/{idCard}
GET /HomeCard/GetHomeCards
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /FAQ/InsertOrUpdateFAQ
POST /HomeCard/InsertOrUpdateHomeCard
POST /HomeCard/UploadHomeCardImage
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b3437d78254
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/FAQ_Family_Invitation
GET /Content/FAQ_Friend_Invitation
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/PrivacyPolicyExplora
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /FAQ/CheckUserInAzure
GET /FAQ/GetFAQs/{type}
GET /FAQ/TestUser
GET /FAQ/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /HomeCard/GetHomeCardImage/{idCard}
GET /HomeCard/GetHomeCards
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /FAQ/InsertOrUpdateFAQ
POST /HomeCard/InsertOrUpdateHomeCard
POST /HomeCard/UploadHomeCardImage
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b34629a9738
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /FAQ/CheckUserInAzure
GET /FAQ/GetFAQs/{type}
GET /FAQ/TestUser
GET /FAQ/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /HomeCard/GetHomeCardImage/{idCard}
GET /HomeCard/GetHomeCards
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /FAQ/InsertOrUpdateFAQ
POST /HomeCard/InsertOrUpdateHomeCard
POST /HomeCard/UploadHomeCardImage
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b340cdb94a7
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /FAQ/CheckUserInAzure
GET /FAQ/GetFAQs/{type}
GET /FAQ/TestUser
GET /FAQ/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /FAQ/InsertOrUpdateFAQ
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491d8557725740d9b6f91d13faed042b34fab4b822
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /Account/InviteDelete/{IdInvitation}/{IsUser}
DELETE /AdminManagement/AccountDelete/{IdAccount}
DELETE /AdminManagement/BookingDelete/{IdBooking}
DELETE /AdminManagement/ContactDelete/{IdContact}
DELETE /AdminManagement/CrewDeleteContract/{IdContract}/{IdAccount}
DELETE /AdminManagement/ExecutiveDeleteAccount/{IdAccount}
GET /Account/CheckUserInAzure
GET /Account/EmployeeSendActivationEmail
GET /Account/GetInfoInvitationContactHR
GET /Account/GetProfile
GET /Account/GetUserActiveList
GET /Account/GetUserFromId
GET /Account/InviteGetInfo
GET /Account/InviteGetInfoCrew
GET /Account/InviteList
GET /Account/LanguageGetListFromOfficeId
GET /Account/ResentInvitation
GET /Account/TestUser
GET /Account/UserGetInfoLogIn
GET /AccountPublic/CheckEmailReferent
GET /AccountPublic/CheckGUID
GET /AccountPublic/CompanyGet
GET /AccountPublic/EmployeeActiveAccount
GET /AccountPublic/EndSession
GET /AccountPublic/ErrorAuthorized
GET /AccountPublic/GetDropdownLangVisible
GET /AccountPublic/TestIP
GET /AdminManagement/CheckRequestHr
GET /AdminManagement/CheckUserInAzure
GET /AdminManagement/CompaniesLanguage/{IdAgency}/{IdCompany}
GET /AdminManagement/CompanyList
GET /AdminManagement/CrewAccountManagementGetInfo
GET /AdminManagement/CrewContactManagementGetInfo
GET /AdminManagement/DownloadDocumentHR/{IdHRApprovalFlow}
GET /AdminManagement/DownloadInviteErrorMassive/{idError}
GET /AdminManagement/DownloadInviteMassiveTemplate
GET /AdminManagement/GetCompaniesByUserId/{userId}
GET /AdminManagement/GetHRUserByCompanyId/{companyId}
GET /AdminManagement/GetHrUsers
GET /AdminManagement/GetListCompanyType
GET /AdminManagement/GetListEmailFiltered/{typeReferent}/{filter}
GET /AdminManagement/GetThirdPartUser
GET /AdminManagement/HR_RequestGetDetails/{idRequest}
GET /AdminManagement/InviteMassive
GET /AdminManagement/TestUser
GET /AdminManagement/UserGetInfoLogIn
GET /AdminManagement/UserRoleAccountManagementGetInfo
GET /Azure/CheckUserInAzure
GET /Azure/TestUser
GET /Azure/UserGetInfoLogIn
GET /BkgPanel/GetDatatransReferenceNo/{bookingNumber}/{paymentType}
GET /BkgPanel/GetFamilyUserInfo
GET /Content/BookYourJourney
GET /Content/BookingProcedureExplora
GET /Content/CheckUserInAzure
GET /Content/CodeConductExplora
GET /Content/FAQ
GET /Content/HowToBook
GET /Content/HowToInvite
GET /Content/HowToMoveOldContacts
GET /Content/HrUserGuide
GET /Content/PricingGridExplora
GET /Content/PrivacyPolicy
GET /Content/SuiteCategoriesExplora
GET /Content/TermsAndConditionExplora
GET /Content/TestUser
GET /Content/UserGetInfoLogIn
GET /HangFires/CheckUserInAzure
GET /HangFires/GetHangfireJobs
GET /HangFires/StartRemainderExpiredContact
GET /HangFires/StartRemainderExpiredEmployee
GET /HangFires/TestUser
GET /HangFires/UserGetInfoLogIn
GET /HangFires/rescheduleAllHangfiresJobs
GET /Report/CheckUserInAzure
GET /Report/ReportCompany
GET /Report/ReportCompanyByCountry
GET /Report/ReportCompanyByCountryExcel
GET /Report/ReportCountBookingForYear
GET /Report/ReportCountBookingForYearExcel
GET /Report/ReportRegisteredUser
GET /Report/ReportRegisteredUserExcel
GET /Report/TestUser
GET /Report/UserGetInfoLogIn
GET /TranslationPrivateModule/GetLabel
GET /TranslationPrivateModule/GetLabelKey_ForDropDown
GET /TranslationPrivateModule/GetPages_ForDropDown
GET /TranslationPrivateModule/GetTranslationFile
GET /TranslationPrivateModule/SearchTranslationLabels
POST /Account/ContactUs
POST /Account/GenerateHrForExistingUser
POST /Account/InsertOrUpdateProfile
POST /Account/InvitationGetTemplate
POST /Account/InvitationGetTemplateCheck
POST /Account/SendInvitationContact
POST /Account/SendInviteCrew
POST /AccountPublic/ContactUs
POST /AccountPublic/PreRegistrationEmployee
POST /AdminManagement/AcceptHRRequest
POST /AdminManagement/AddCompanyUserHr
POST /AdminManagement/BackInPendingStatus
POST /AdminManagement/BookingAdd
POST /AdminManagement/BookingSearch/{userType}
POST /AdminManagement/CompanyInsert
POST /AdminManagement/ContactDialogGetInfo
POST /AdminManagement/CrewAccountSearch
POST /AdminManagement/CrewAddContract/{IdAccount}
POST /AdminManagement/CrewContactDialogGetInfo
POST /AdminManagement/ExecutiveAccountSearch
POST /AdminManagement/ExecutiveAddAccount
POST /AdminManagement/HRApprovalFlowGetList
POST /AdminManagement/RejectHRRequest
POST /AdminManagement/SaveThirdPartUser
POST /AdminManagement/SendGenericEmail
POST /AdminManagement/UploadInviteMassive
POST /AdminManagement/searchCrewContact
POST /AdminManagement/searchEmployeeAccount
POST /AdminManagement/searchEmployeeContact
POST /AdminManagement/searchUserRoleAccount
POST /BkgPanel/CustomerAddBooking
POST /BkgPanel/CustomerUpdateBookingStatus
POST /BkgPanel/login
POST /TranslationPrivateModule/UpdateLabel
PUT /Account/InviteEnableDisable/{IdInvitation}/{isEnable}
PUT /Account/InviteRenew/{IdInvitation}
PUT /AdminManagement/AccountChangeStatus/{IdAccount}
PUT /AdminManagement/BookingUpdate
PUT /AdminManagement/CompanyUpdate
PUT /AdminManagement/ContactChangeStatus/{IdContact}
PUT /AdminManagement/CrewAccountUpdate
PUT /AdminManagement/CrewContactUpdate
PUT /AdminManagement/CrewUpdateContract/{IdAccount}
PUT /AdminManagement/EmployeeAccountUpdate
PUT /AdminManagement/EmployeeContactUpdate
PUT /AdminManagement/ExecutiveUpdateAccount
PUT /AdminManagement/UserRoleAccountUpdate
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3dec863f59258a9f72eacd4d9eb5bbc5a957af4f2
GraphQL introspection enabled at /graphql Types: 134 (by kind: ENUM: 10, INPUT_OBJECT: 12, OBJECT: 107, SCALAR: 5) Operations: - Query: Query | fields: analytics, assets, authentication, comments, contribute - Mutation: Mutation | fields: analytics, assets, authentication, comments, groups - Subscription: Subscription | fields: loggingLiveTrail Directives: auth, cacheControl, deprecated, include, rateLimit, skip, specifiedBy (total: 7)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db84e0e3503cb4efbd7828295f79a5d0f488e3fbf87206938e
GraphQL introspection enabled at /api Types: 104 (by kind: ENUM: 9, INPUT_OBJECT: 27, OBJECT: 62, SCALAR: 5, UNION: 1) Operations: - Query: Query | fields: _empty, environments, me, user, users - Mutation: Mutation | fields: _empty, addEnvironment, deleteUser, updateEnvironment, updateUser - Subscription: Subscription | fields: _empty, brandAdded, configurationActionKindAdded, environmentAdded, segmentAdded Directives: auth, cacheControl, deprecated, include, skip (total: 5)
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549e168f3c7f225b42104393b5336ea045a02708a33
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /api/v1/Catalog/{store}/import/status
GET /api/v1/Shopify/install
GET /api/v1/Shopify/oauth
GET /api/v1/ShopifyConnector
GET /api/v1/ShopifyConnector/{id}
GET /api/v1/install
GET /api/v1/installed/oauth
GET /api/v1/oauth
GET /installment/failure
GET /installment/success
POST /api/v1/Catalog/{store}
POST /api/v1/Secrets/upsert
POST /api/v1/Shopify/customers/data_request
POST /api/v1/Shopify/customers/redact
POST /api/v1/Shopify/dutytax/calculate
POST /api/v1/Shopify/orders/fulfill
POST /api/v1/Shopify/shop/redact
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/Appeasement
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/Cancel
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/LineItems/Appeasement
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/LineItems/Cancel
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/fulfillments/created
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/inventory_items/upsert
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/orders/updated
POST /api/v1/ShopifyConnector/{id}/install/webhooks
POST /api/v1/customers/data_request
POST /api/v1/customers/redact
POST /api/v1/shop/redact
PUT /api/v1/Brand/{tenantCode}/business-information
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035491f51798b71753dd1c4fd3efc7a300f4dc7c0b38d
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /api/v1/Shopify/install
GET /api/v1/Shopify/oauth
GET /api/v1/ShopifyConnector
GET /api/v1/ShopifyConnector/{id}
GET /api/v1/install
GET /api/v1/installed/oauth
GET /api/v1/oauth
GET /installment/failure
GET /installment/success
POST /api/v1/Secrets/upsert
POST /api/v1/Shopify/customers/data_request
POST /api/v1/Shopify/customers/redact
POST /api/v1/Shopify/orders/fulfill
POST /api/v1/Shopify/shop/redact
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/Appeasement
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/Cancel
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/LineItems/Appeasement
POST /api/v1/Shopify/{tenantCode}/{brandOrderReference}/NonCheckoutOrder/LineItems/Cancel
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/fulfillments/created
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/inventory_items/upsert
POST /api/v1/Shopify/{tenantCode}/{shopifyConnectorId}/orders/updated
POST /api/v1/ShopifyConnector/{id}/install/webhooks
POST /api/v1/customers/data_request
POST /api/v1/customers/redact
POST /api/v1/shop/redact
PUT /api/v1/Brand/{tenantCode}/business-information
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62337d3d62337d3d62337d3d62337d3d62337d3d6
GraphQL introspection enabled at /api/graphql
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa383f86c3cc95aaf00e10793b6dc1ebbe11262568c
GraphQL introspection enabled at /graphql Types: 319 (by kind: ENUM: 38, INPUT_OBJECT: 136, INTERFACE: 3, OBJECT: 138, SCALAR: 4) Operations: - Query: Query | fields: asaUsers, categoriesForClient, clientLinks, clientsForUser, dashboardsForClient - Mutation: Mutation | fields: createRole, createSecurityGroupForClient, createTatRole, deleteRole, reOnboardUsers Directives: defer, deprecated, include, skip, specifiedBy (total: 5)