AkamaiGHost
tcp/443
cloudflare
tcp/443
istio-envoy
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c026392ab026392ab8c1e2eb8f0c2cfab28e7fa4a38fce239
Found 7 files trough .DS_Store spidering: /src /src/App /src/App/Grupo /src/App/Rest /src/App/Survey /src/App/Survey/dist /src/App/Teams
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d8c99f75a8c99f75a8c99f75a8c99f75a
Found 1 files trough .DS_Store spidering: /src
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: high
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65227dec9922
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://hiae-tiensino@dev.azure.com/hiae-tiensino/MOODLE/_git/HIAE.Moodle.ProjetosEducacionais fetch = +refs/heads/*:refs/remotes/origin/* [gc] auto = 0
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522a959416a
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@ssh.dev.azure.com:v3/hiae-tiensino/MOODLE/HIAE.Moodle.ProjetosEducacionais fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "QAS"] remote = origin merge = refs/heads/QAS [branch "server-ec2-ens-projeduca-qas01"] remote = origin merge = refs/heads/server-ec2-ens-projeduca-qas01 [branch "develop"] remote = origin merge = refs/heads/develop
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652286ae85ea
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE [branch "MOODLE_402_STABLE"] remote = origin merge = refs/heads/MOODLE_402_STABLE
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522227c24eb
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE [branch "MOODLE_400_STABLE"] remote = origin merge = refs/heads/MOODLE_400_STABLE [branch "MOODLE_401_STABLE"] remote = origin merge = refs/heads/MOODLE_401_STABLE [branch "MOODLE_402_STABLE"] remote = origin merge = refs/heads/MOODLE_402_STABLE
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522c49127d4
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652286ae85ea
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE [branch "MOODLE_402_STABLE"] remote = origin merge = refs/heads/MOODLE_402_STABLE
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522c49127d4
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65226d2eed7a
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@ssh.dev.azure.com:v3/hiae-tiensino/MOODLE/HIAE.Moodle.ProADI fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "QAS"] remote = origin merge = refs/heads/QAS [branch "server-ec2-ens-proadi-qas01"] remote = origin merge = refs/heads/server-ec2-ens-proadi-qas01
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522227c24eb
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE [branch "MOODLE_400_STABLE"] remote = origin merge = refs/heads/MOODLE_400_STABLE [branch "MOODLE_401_STABLE"] remote = origin merge = refs/heads/MOODLE_401_STABLE [branch "MOODLE_402_STABLE"] remote = origin merge = refs/heads/MOODLE_402_STABLE
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522c49127d4
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/moodle/moodle fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "MOODLE_311_STABLE"] remote = origin merge = refs/heads/MOODLE_311_STABLE
Open service 2.17.100.193:80 · dxp-prod-cd.thenewcrosshouse.com
2026-02-07 11:51
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://dxp-prod-cd.thenewcrosshouse.com/ Cache-Control: max-age=1800 Date: Sat, 07 Feb 2026 11:52:03 GMT Connection: close
Open service 2.17.100.193:80 · webtest3381.gpistudios.com
2026-01-23 11:13
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://webtest3381.gpistudios.com/ Expires: Fri, 23 Jan 2026 11:13:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 23 Jan 2026 11:13:32 GMT Connection: close
Open service 2.17.100.193:443 · backend-brand.ifood.com.br
2026-01-23 03:10
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 386 Expires: Fri, 23 Jan 2026 03:10:44 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 23 Jan 2026 03:10:44 GMT Connection: close Strict-Transport-Security: max-age=15768000 ; includeSubDomains Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://backend-brand.ifood.com.br/" on this server.<P> Reference #18.bd641102.1769137843.c755352 <P>https://errors.edgesuite.net/18.bd641102.1769137843.c755352</P> </BODY> </HTML>
Open service 2.17.100.193:443 · feed.jeronimomartins.com
2026-01-23 02:48
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Content-Security-Policy: default-src 'unsafe-inline' *.akstat.io *.go-mpulse.net 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net https://*.youtube-nocookie.com/ https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com; style-src 'self' 'unsafe-inline' https://*.googleapis.com https://egoiapp2.com https://emailoctopus.com https://*.googletagmanager.com https://fonts.gstatic.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.go-mpulse.net *.akamaihd.net https://feed-qual.jeronimomartins.com *.go-mpulse.net *.akamaihd.net https://*.googletagmanager.com https://egoi.site https://*.e-goi.com https://*.egoiapp2.com https://*.cookielaw.org https://*.addtoany.com https://*.youtube.com https://*.google.com https://*.gstatic.com https://*.e-goi.com https://emailoctopus.com https://connect.facebook.net https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://*.usercentrics.eu; img-src 'self' data: https://*.jeronimomartins.com https://secure.gravatar.com https://*.e-goi.com https://*.cookielaw.org https://*.google.pt https://*.google.com https://*.ytimg.com https://*.googleapis.com https://s.w.org https://fonts.gstatic.com https://*.facebook.com https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://stats.g.doubleclick.net https://*.usercentrics.eu; frame-src 'self' https://*.addtoany.com https://*.google.com https://*.youtube-nocookie.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net; connect-src 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net *.akstat.io *.go-mpulse.net *.akamaihd.net https://*.cookielaw.org https://egoiapp2.com https://*.analytics.google.com https://*.onetrust.com https://stats.g.doubleclick.net https://yoast.com https://*.egoiapp2.com https://*.google-analytics.com https://*.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://*.googleapis.com https://*.usercentrics.eu; font-src 'self' data: https://*.gstatic.com https://fonts.gstatic.com; manifest-src 'self' https://accounts.google.com https://*.google.com https://*.googleapis.com; worker-src 'self' blob: Link: <https://feed.jeronimomartins.com/wp-json/>; rel="https://api.w.org/" Link: <https://feed.jeronimomartins.com/wp-json/wp/v2/pages/9775>; rel="alternate"; title="JSON"; type="application/json" Link: <https://feed.jeronimomartins.com/>; rel=shortlink x-cloud-trace-context: 2bfb2062ebb6944de7aafb47287b99dd X-Akamai-Transformed: 9 33890 0 pmb=mRUM,1 Expires: Fri, 23 Jan 2026 02:48:44 GMT Date: Fri, 23 Jan 2026 02:48:44 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=83 Server-Timing: origin; dur=3917 Alt-Svc: h3=":443"; ma=93600 X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: no-referrer-when-downgrade X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Strict-Transport-Security: max-age=31536000 ; includeSubDomains ; preload Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate Server-Timing: ak_p; desc="1769136519937_34694333_208391548_400039_7472_161_174_-";dur=1
Open service 2.17.100.193:443 · fiquepordentro.ensinoeinstein.com
2026-01-23 01:32
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Thu, 22 Jan 2026 12:27:34 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 110 X-Akamai-Transformed: 9 29131 0 pmb=mRUM,1 Date: Fri, 23 Jan 2026 01:32:32 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=296 Server-Timing: origin; dur=121 Server-Timing: ak_p; desc="1769131951965_34694365_241751778_41712_11300_1_3_-";dur=1
Open service 2.17.100.193:443 · test.elisaevito.cloud
2026-01-23 00:37
HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=414
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=SNyIAfznYbuMHxNdeG%2FgJivc4tUE11jNW8qToHMVfntuTBB9cDX5RX5ptnk4unnYva%2BMRJma9ULhNibQxMoFgqlvZH086RrpgZ8%2FrA%3D%3D"}]}
Link: <https://www.tesax.it/wp-json/>; rel="https://api.w.org/"
Link: <https://www.tesax.it/wp-json/wp/v2/pages/230006>; rel="alternate"; title="JSON"; type="application/json"
Link: <https://www.tesax.it/>; rel=shortlink
referrer-policy: strict-origin-when-cross-origin
Server: cloudflare
x-content-type-options: nosniff
x-frame-options: SAMEORIGIN
x-origin: varnish
x-xss-protection: 1; mode=block
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9c2338bb7e5a4ba8-FRA
Date: Fri, 23 Jan 2026 00:37:18 GMT
Transfer-Encoding: chunked
Connection: close
Connection: Transfer-Encoding
Open service 2.17.100.193:443 · test.elisaevito.cloud
2026-01-10 01:08
HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=10,cfOrigin;dur=378
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=U9xEl0dR9Ybb9B0vkfpHDRjC0Xi8AM8shPO0Ep0TZ0mxZaBLOOjA5yYSGVbgWk8h3jDEpqItMmGs8dOARhn%2FPZSlCfW1xaSD82O6Sg%3D%3D"}]}
Link: <https://www.tesax.it/wp-json/>; rel="https://api.w.org/"
Link: <https://www.tesax.it/wp-json/wp/v2/pages/230006>; rel="alternate"; title="JSON"; type="application/json"
Link: <https://www.tesax.it/>; rel=shortlink
referrer-policy: strict-origin-when-cross-origin
Server: cloudflare
x-content-type-options: nosniff
x-frame-options: SAMEORIGIN
x-origin: varnish
x-xss-protection: 1; mode=block
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb8493079dbe7b1-FRA
Date: Sat, 10 Jan 2026 01:08:57 GMT
Transfer-Encoding: chunked
Connection: close
Connection: Transfer-Encoding
Open service 2.17.100.193:443 · fiquepordentro.ensinoeinstein.com
2026-01-10 00:34
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Thu, 08 Jan 2026 13:48:35 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 383 X-Akamai-Transformed: 9 29042 0 pmb=mRUM,1 Date: Sat, 10 Jan 2026 00:34:27 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=949 Server-Timing: origin; dur=412 Server-Timing: ak_p; desc="1768005266388_34694365_1834306378_136104_20825_0_6_-";dur=1
Open service 2.17.100.193:443 · feed.jeronimomartins.com
2026-01-10 00:09
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Content-Security-Policy: default-src 'unsafe-inline' *.akstat.io *.go-mpulse.net 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net; style-src 'self' 'unsafe-inline' https://*.googleapis.com https://egoiapp2.com https://emailoctopus.com https://*.googletagmanager.com https://fonts.gstatic.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.go-mpulse.net *.akamaihd.net https://feed-qual.jeronimomartins.com *.go-mpulse.net *.akamaihd.net https://*.googletagmanager.com https://egoi.site https://*.e-goi.com https://*.egoiapp2.com https://*.cookielaw.org https://*.addtoany.com https://*.youtube.com https://*.google.com https://*.gstatic.com https://*.e-goi.com https://emailoctopus.com https://connect.facebook.net https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net; img-src 'self' data: https://feed-qual.jeronimomartins.com https://secure.gravatar.com https://*.e-goi.com https://*.cookielaw.org https://*.google.pt https://*.google.com https://*.ytimg.com https://*.googleapis.com https://s.w.org https://fonts.gstatic.com https://*.facebook.com https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://stats.g.doubleclick.net; frame-src 'self' https://*.addtoany.com https://*.google.com https://*.youtube-nocookie.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net; connect-src 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net *.akstat.io *.go-mpulse.net *.akamaihd.net https://*.cookielaw.org https://egoiapp2.com https://*.analytics.google.com https://*.onetrust.com https://stats.g.doubleclick.net https://yoast.com https://*.egoiapp2.com https://*.google-analytics.com https://*.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://*.googleapis.com; font-src 'self' data: https://*.gstatic.com https://fonts.gstatic.com; manifest-src 'self' https://accounts.google.com https://*.google.com https://*.googleapis.com; worker-src 'self' blob: Link: <https://feed.jeronimomartins.com/wp-json/>; rel="https://api.w.org/" Link: <https://feed.jeronimomartins.com/wp-json/wp/v2/pages/9775>; rel="alternate"; title="JSON"; type="application/json" Link: <https://feed.jeronimomartins.com/>; rel=shortlink x-cloud-trace-context: 7c2d0cd29bb367e32c50717df073670c X-Akamai-Transformed: 9 32839 0 pmb=mRUM,1 Expires: Sat, 10 Jan 2026 00:09:15 GMT Date: Sat, 10 Jan 2026 00:09:15 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=99 Server-Timing: origin; dur=5187 Alt-Svc: h3=":443"; ma=93600 X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: no-referrer-when-downgrade X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Strict-Transport-Security: max-age=31536000 ; includeSubDomains ; preload Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate Server-Timing: ak_p; desc="1768003749403_34694333_726889282_528630_31472_170_334_-";dur=1
Open service 2.17.100.193:443 · backend-brand.ifood.com.br
2026-01-09 14:09
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 388 Expires: Fri, 09 Jan 2026 14:09:34 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 14:09:34 GMT Connection: close Strict-Transport-Security: max-age=15768000 ; includeSubDomains Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://backend-brand.ifood.com.br/" on this server.<P> Reference #18.b4641102.1767967774.23ab9fdf <P>https://errors.edgesuite.net/18.b4641102.1767967774.23ab9fdf</P> </BODY> </HTML>
Open service 2.17.100.193:443 · thrivingminds-staging.camhx.ca
2026-01-09 11:01
HTTP/1.1 301 Moved Permanently X-Redirect-By: WordPress Location: https://thrivingmindshub.ca/ Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Fri, 09 Jan 2026 11:01:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 11:01:12 GMT Connection: close
Open service 2.17.100.193:443 · sportsbook-us-pa.draftkings.com
2026-01-09 10:38
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 393 Expires: Fri, 09 Jan 2026 10:38:42 GMT Date: Fri, 09 Jan 2026 10:38:42 GMT Connection: close GRN: 0.e4641102.1767955122.2af7850f Strict-Transport-Security: max-age=2628000 ; includeSubDomains Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://sportsbook-us-pa.draftkings.com/" on this server.<P> Reference #18.e4641102.1767955122.2af7850f <P>https://errors.edgesuite.net/18.e4641102.1767955122.2af7850f</P> </BODY> </HTML>
Open service 2.17.100.193:443 · ensinomedio.ensinoeinstein.com
2026-01-09 05:30
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Tue, 09 Dec 2025 15:02:41 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 384 X-Akamai-Transformed: 9 - 0 pmb=mRUM,1 Date: Fri, 09 Jan 2026 05:30:24 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=342 Server-Timing: origin; dur=388 Server-Timing: ak_p; desc="1767936623512_34694348_48812035_72958_27398_82_188_-";dur=1
Open service 2.17.100.193:443 · feed.jeronimomartins.com
2026-01-02 20:16
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Content-Security-Policy: default-src 'unsafe-inline' *.akstat.io *.go-mpulse.net 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net; style-src 'self' 'unsafe-inline' https://*.googleapis.com https://egoiapp2.com https://emailoctopus.com https://*.googletagmanager.com https://fonts.gstatic.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.go-mpulse.net *.akamaihd.net https://feed-qual.jeronimomartins.com *.go-mpulse.net *.akamaihd.net https://*.googletagmanager.com https://egoi.site https://*.e-goi.com https://*.egoiapp2.com https://*.cookielaw.org https://*.addtoany.com https://*.youtube.com https://*.google.com https://*.gstatic.com https://*.e-goi.com https://emailoctopus.com https://connect.facebook.net https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net; img-src 'self' data: https://feed-qual.jeronimomartins.com https://secure.gravatar.com https://*.e-goi.com https://*.cookielaw.org https://*.google.pt https://*.google.com https://*.ytimg.com https://*.googleapis.com https://s.w.org https://fonts.gstatic.com https://*.facebook.com https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://stats.g.doubleclick.net; frame-src 'self' https://*.addtoany.com https://*.google.com https://*.youtube-nocookie.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net; connect-src 'self' *.akstat.io *.go-mpulse.net *.akamaihd.net *.akstat.io *.go-mpulse.net *.akamaihd.net https://*.cookielaw.org https://egoiapp2.com https://*.analytics.google.com https://*.onetrust.com https://stats.g.doubleclick.net https://yoast.com https://*.egoiapp2.com https://*.google-analytics.com https://*.google.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://td.doubleclick.net https://*.googleapis.com; font-src 'self' data: https://*.gstatic.com https://fonts.gstatic.com; manifest-src 'self' https://accounts.google.com https://*.google.com https://*.googleapis.com; worker-src 'self' blob: Link: <https://feed.jeronimomartins.com/wp-json/>; rel="https://api.w.org/" Link: <https://feed.jeronimomartins.com/wp-json/wp/v2/pages/9775>; rel="alternate"; title="JSON"; type="application/json" Link: <https://feed.jeronimomartins.com/>; rel=shortlink x-cloud-trace-context: 63418190a1be82799969e6a3a6bf500c X-Akamai-Transformed: 9 32882 0 pmb=mRUM,1 Expires: Fri, 02 Jan 2026 20:16:25 GMT Date: Fri, 02 Jan 2026 20:16:25 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=31 Server-Timing: origin; dur=4733 Alt-Svc: h3=":443"; ma=93600 X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: no-referrer-when-downgrade X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Strict-Transport-Security: max-age=31536000 ; includeSubDomains ; preload Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate Server-Timing: ak_p; desc="1767384980928_34694310_1467700344_476449_16989_0_71_-";dur=1
Open service 2.17.100.193:443 · fiquepordentro.ensinoeinstein.com
2026-01-02 20:08
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Tue, 23 Dec 2025 17:09:41 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 120 X-Akamai-Transformed: 9 28993 0 pmb=mRUM,1 Date: Fri, 02 Jan 2026 20:08:56 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=1094 Server-Timing: origin; dur=128 Server-Timing: ak_p; desc="1767384534964_34694365_1304692336_121804_14326_16_20_-";dur=1
Open service 2.17.100.193:443 · test.elisaevito.cloud
2026-01-02 18:33
HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=12,cfOrigin;dur=350
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=rpotJUfdkqMpVWRVloeUmLym%2BUR4C2PpjuiwiyZoZhf46Vvlqg3xfg%2BarorDR8DUkfad8c7FEdSco%2BTrCg6F%2F3TVD1rD0FHiAG0zjA%3D%3D"}]}
Link: <https://www.tesax.it/wp-json/>; rel="https://api.w.org/"
Link: <https://www.tesax.it/wp-json/wp/v2/pages/230006>; rel="alternate"; title="JSON"; type="application/json"
Link: <https://www.tesax.it/>; rel=shortlink
referrer-policy: strict-origin-when-cross-origin
Server: cloudflare
x-content-type-options: nosniff
x-frame-options: SAMEORIGIN
x-origin: varnish
x-xss-protection: 1; mode=block
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b7c58581a0435f7-FRA
Date: Fri, 02 Jan 2026 18:33:30 GMT
Transfer-Encoding: chunked
Connection: close
Connection: Transfer-Encoding
Open service 2.17.100.193:443 · backend-brand.ifood.com.br
2026-01-02 14:26
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 386 Expires: Fri, 02 Jan 2026 14:26:02 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 02 Jan 2026 14:26:02 GMT Connection: close Strict-Transport-Security: max-age=15768000 ; includeSubDomains Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://backend-brand.ifood.com.br/" on this server.<P> Reference #18.bd641102.1767363962.312b4a2 <P>https://errors.edgesuite.net/18.bd641102.1767363962.312b4a2</P> </BODY> </HTML>
Open service 2.17.100.193:443 · ensinomedio.ensinoeinstein.com
2026-01-02 05:05
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Tue, 09 Dec 2025 15:02:41 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 367 X-Akamai-Transformed: 9 - 0 pmb=mRUM,1 Date: Fri, 02 Jan 2026 05:05:14 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=1417 Server-Timing: origin; dur=382 Server-Timing: ak_p; desc="1767330311900_34694348_478166542_179953_34553_178_480_-";dur=1
Open service 2.17.100.193:443 · thrivingminds-staging.camhx.ca
2026-01-02 04:01
HTTP/1.1 301 Moved Permanently X-Redirect-By: WordPress Location: https://thrivingmindshub.ca/ Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Fri, 02 Jan 2026 04:01:40 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 02 Jan 2026 04:01:40 GMT Connection: close
Open service 2.17.100.193:443 · backend-brand.ifood.com.br
2025-12-23 02:15
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 388 Expires: Tue, 23 Dec 2025 02:15:59 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 23 Dec 2025 02:15:59 GMT Connection: close Strict-Transport-Security: max-age=15768000 ; includeSubDomains Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://backend-brand.ifood.com.br/" on this server.<P> Reference #18.b4641102.1766456158.289ef464 <P>https://errors.edgesuite.net/18.b4641102.1766456158.289ef464</P> </BODY> </HTML>
Open service 2.17.100.193:443 · test.elisaevito.cloud
2025-12-22 23:43
HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=10,cfOrigin;dur=628
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=MprShoh0AOmFgd25uLVO%2FRTZlHPQYe8DEQqSJifi6QRiyNk%2BdSk2h6f2obCHVtI%2FpN9LT2sS7AIxchR3OF3NBsSD786%2F2GqHWaSaIQ%3D%3D"}]}
Link: <https://www.tesax.it/wp-json/>; rel="https://api.w.org/"
Link: <https://www.tesax.it/wp-json/wp/v2/pages/230006>; rel="alternate"; title="JSON"; type="application/json"
Link: <https://www.tesax.it/>; rel=shortlink
referrer-policy: strict-origin-when-cross-origin
Server: cloudflare
x-content-type-options: nosniff
x-frame-options: SAMEORIGIN
x-origin: varnish
x-xss-protection: 1; mode=block
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b237b79de0a3383-FRA
Date: Mon, 22 Dec 2025 23:43:36 GMT
Transfer-Encoding: chunked
Connection: close
Connection: Transfer-Encoding
Open service 2.17.100.193:443 · fiquepordentro.ensinoeinstein.com
2025-12-22 20:43
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Wed, 17 Dec 2025 23:02:17 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 105 X-Akamai-Transformed: 9 29148 0 pmb=mRUM,1 Date: Mon, 22 Dec 2025 20:43:37 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=437 Server-Timing: origin; dur=116 Server-Timing: ak_p; desc="1766436216768_34694348_57746994_55366_11116_12_16_-";dur=1
Open service 2.17.100.193:443 · ensinomedio.ensinoeinstein.com
2025-12-22 16:37
HTTP/1.1 200 OK Server: istio-envoy x-powered-by: x-xss-protection: 1; mode=block x-frame-options: SAMEORIGIN x-content-type-options: nosniff referrer-policy: no-referrer-when-downgrade strict-transport-security: max-age=63072000; includeSubDomains Content-Security-Policy: upgrade-insecure-requests Last-Modified: Mon, 22 Dec 2025 14:45:37 GMT Content-Type: text/html; charset=UTF-8 x-envoy-upstream-service-time: 116 X-Akamai-Transformed: 9 68414 0 pmb=mRUM,1 Date: Mon, 22 Dec 2025 16:37:44 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=1490 Server-Timing: origin; dur=130 Server-Timing: ak_p; desc="1766421462728_34694348_40910817_162047_42718_0_178_-";dur=1
Open service 2.17.100.193:443 · thrivingminds-staging.camhx.ca
2025-12-22 12:08
HTTP/1.1 301 Moved Permanently X-Redirect-By: WordPress Location: https://thrivingmindshub.ca/ Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Mon, 22 Dec 2025 12:08:44 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 22 Dec 2025 12:08:44 GMT Connection: close
Open service 2.17.100.193:443 · feed.jeronimomartins.com
2025-12-22 07:41
HTTP/1.1 403 Forbidden Mime-Version: 1.0 Content-Type: text/html Content-Length: 378 Expires: Mon, 22 Dec 2025 07:41:39 GMT Date: Mon, 22 Dec 2025 07:41:39 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Alt-Svc: h3=":443"; ma=93600 X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: no-referrer-when-downgrade X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Strict-Transport-Security: max-age=31536000 ; includeSubDomains ; preload Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate Server-Timing: ak_p; desc="1766389299831_34694333_527522672_21_5406_96_116_-";dur=1 Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://feed.jeronimomartins.com/" on this server.<P> Reference #18.bd641102.1766389299.1f715b70 <P>https://errors.edgesuite.net/18.bd641102.1766389299.1f715b70</P> </BODY> </HTML>
Open service 2.17.100.193:443 · store.unifiedpoints.com
2025-12-22 06:29
HTTP/1.1 500 Internal Server Error Content-Type: text/html; charset=UTF-8 Content-Length: 0 X-UA-Compatible: IE=edge X-Frame-Options: SAMEORIGIN X-Magento-Cache-Debug: MISS Expires: Mon, 22 Dec 2025 06:29:46 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 22 Dec 2025 06:29:46 GMT Connection: close Server-Timing: edge; dur=13 Server-Timing: origin; dur=475 Server-Timing: cdn-cache; desc=MISS Alt-Svc: h3=":443"; ma=93600 Server-Timing: ak_p; desc="1766384985511_34694333_522724597_48872_22527_91_111_-";dur=1
projetoseducacionaisqas.ensinoeinstein.com 5 proadiqas.ensinoeinstein.com 3 projetoseducacionais.ensinoeinstein.com 2 campusvirtual.ccb.org.co 2 store.unifiedpoints.com 1 feed.jeronimomartins.com 3 thrivingminds-staging.camhx.ca 2 sportsbook-us-pa.draftkings.com 0 ensinomedio.ensinoeinstein.com 2 test.elisaevito.cloud 3 fiquepordentro.ensinoeinstein.com 3 dxp-prod-cd.thenewcrosshouse.com 0 backend-brand.ifood.com.br 3 webtest3381.gpistudios.com 0