AkamaiGHost
tcp/443 tcp/80
Microsoft-IIS 10.0
tcp/443
awselb 2.0
tcp/443
cloudflare
tcp/443
daiquiri 5
tcp/443
nginx
tcp/80
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549cef6dfe346537427879e634a9136877b02f855e0
Public Swagger UI/API detected at path: /swagger/index.html - sample paths: GET /api/healthcheck GET /api/status POST /api/ravv POST /api/ravv/codingtextline POST /api/ravv/deliverydates POST /api/ravv/plan POST /api/ravv/shippingdates
Open service 2.21.239.23:80 · scim.cloudcontactcenter-sit.nube.53.com
2026-02-03 19:15
HTTP/1.1 301 Moved Permanently Server: AkamaiGHost Content-Length: 0 Location: https://scim.cloudcontactcenter-sit.nube.53.com/ Expires: Tue, 03 Feb 2026 19:16:21 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 03 Feb 2026 19:16:21 GMT Connection: close
Open service 2.21.239.23:443 · journal.lardennais.fr
2026-02-02 13:25
HTTP/1.1 200 OK
X-Powered-By: PHP/5.5.9-1ubuntu4.17
Content-Type: text/html
x-storage: default
Expires: Mon, 02 Feb 2026 13:25:36 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Mon, 02 Feb 2026 13:25:36 GMT
Content-Length: 728
Connection: close
Set-Cookie: jwtToken=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJiIjoiZnJfbGFyZGVubmFpcyIsImMiOltdLCJ4IjoiODcxYzljMzBjNzM3YTA3N2U0OGZiNDA0OWQyY2U2YmMyMGZiMjBmNjcwODI4ZTEzN2M5MDg0NjRlYzNiMTQzYyIsImV4cCI6MTc3MDA0MjMzNiwiaWF0IjoxNzcwMDM4NzM2fQ.VYr9tz2v5QPlv0rh4k3TUuL_4LvTBM2dV0hXYDwgQhw; Path=/; Domain=.lardennais.fr; Max-age=3600
<script type="text/javascript">
//Prise en compte des nouveaux domaines pour mettre en place le titre code directement
var domain = top.location.hostname;
var code = domain.split(".");
var titreCode = code[1];
if (titreCode == "lavoix"){
titreCode = "lavoixdunord";
}
if(top.location.search){ // dans le cas où il y a un "?query" qui ferait une boucle de redirection
var str = top.location.href;
var result = str.substring(0, str.indexOf(top.location.search));
top.location.href = result + titreCode + top.location.search;
}else{
top.location.href = top.location.href+titreCode;
}
</script>
Open service 2.21.239.23:443 · remeng.rosselcdn.net
2026-02-02 13:25
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=utf-8
Retry-After: 5
Content-Length: 302
Date: Mon, 02 Feb 2026 13:25:35 GMT
Connection: close
Page title: 404 No such file or directory
<!DOCTYPE html>
<html>
<head>
<title>404 No such file or directory</title>
</head>
<body>
<h1>Error 404 No such file or directory</h1>
<p>No such file or directory</p>
<h3>Guru Meditation:</h3>
<p>XID: 1042356359</p>
<hr>
<p>Varnish cache server</p>
</body>
</html>
Open service 2.21.239.23:80 · sgr.www-qa.burgerking.fr
2026-02-02 13:21
HTTP/1.1 404 Not Found Server: nginx Content-Type: text/html Content-Length: 146 Date: Mon, 02 Feb 2026 13:22:16 GMT Connection: close Page title: 404 Not Found <html> <head><title>404 Not Found</title></head> <body> <center><h1>404 Not Found</h1></center> <hr><center>nginx</center> </body> </html>
Open service 2.21.239.23:443 · artists.apple.com
2026-01-25 17:10
HTTP/1.1 200 OK Server: daiquiri/5 Content-Type: text/html Content-Language: en Access-Control-Allow-Origin: * X-Frame-Options: SAMEORIGIN Content-Security-Policy: default-src 'self' www.apple.com; base-uri 'self'; script-src 'self' 'nonce-836ad8063705b0106603f39cf6eeb8ff' 'strict-dynamic' 'unsafe-eval' appleid.cdn-apple.com; style-src 'self' www.apple.com 'unsafe-inline'; img-src 'self' data: metrics.apple.com embed.apple.media pineapple-coyote.s3.amazonaws.com cdsassets.apple.com cdsassets-uat.apple.com xp.apple.com data.securemetrics-apple.com securemetrics.apple.com; media-src 'self' blob: embed.apple.media pineapple-coyote.s3.amazonaws.com embed.podcasts.apple.com cdsassets.apple.com cdsassets-uat.apple.com; frame-src 'self' embed.apple.media pineapple-coyote.s3.amazonaws.com embed.podcasts.apple.com cdsassets.apple.com cdsassets-uat.apple.com; connect-src 'self' www.apple.com dpm.demdex.net cdsassets.apple.com cdsassets-uat.apple.com xp.apple.com data.securemetrics-apple.com securemetrics.apple.com; object-src 'none' Strict-Transport-Security: max-age=31536000; includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Apple-Jingle-Correlation-Key: RAMHFDM6FDUU6VAQW323K3IQRI x-daiquiri-instance: daiquiri:49005002:st44p00it-ztev09034901:7987:26RELEASE13:daiquiri-amp-dsce-shared-ext-001-st x-daiquiri-debug-worker-pid: 63545 Cache-Control: public, max-age=2421 Expires: Sun, 25 Jan 2026 17:51:15 GMT Date: Sun, 25 Jan 2026 17:10:54 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding
Open service 2.21.239.23:80 · artists.apple.com
2026-01-25 17:10
HTTP/1.1 302 Moved Temporarily Server: AkamaiGHost Content-Length: 0 Location: https://artists.apple.com/ Date: Sun, 25 Jan 2026 17:11:16 GMT Connection: close
Open service 2.21.239.23:80 · webtest2.gpistudios.com
2026-01-23 11:13
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://webtest2.gpistudios.com/ Expires: Fri, 23 Jan 2026 11:13:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 23 Jan 2026 11:13:32 GMT Connection: close X-N: S
Open service 2.21.239.23:443 · webtest2.gpistudios.com
2026-01-23 11:13
HTTP/1.1 403 Forbidden Content-Type: application/xml x-amz-bucket-region: ap-northeast-1 x-amz-request-id: 71J7187358KVTY3Y x-amz-id-2: 9XbOmZTFo+g70kGhsWjtmIq84BsihxPdNSuGiv7Utv1FnFZxsJqCAP8fNOHHXrZ+as8xoN/JNLY= Content-Length: 243 Expires: Fri, 23 Jan 2026 11:13:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 23 Jan 2026 11:13:17 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>AccessDenied</Code><Message>Access Denied</Message><RequestId>71J7187358KVTY3Y</RequestId><HostId>9XbOmZTFo+g70kGhsWjtmIq84BsihxPdNSuGiv7Utv1FnFZxsJqCAP8fNOHHXrZ+as8xoN/JNLY=</HostId></Error>
Open service 2.21.239.23:443 · integrawebservice.com.br
2026-01-10 00:08
HTTP/1.1 503 Service Unavailable Mime-Version: 1.0 Content-Type: text/html Content-Length: 280 Cache-Control: max-age=0 Date: Sat, 10 Jan 2026 00:08:15 GMT Connection: close Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=440 Server-Timing: origin; dur=0 X-XSS-Protection: 1; mode=block X-Content-Type: Nosniff X-Frame-Options: SAMEORIGIN Strict-Transport-Security: max-age=15768000 ; includeSubDomains Server-Timing: ak_p; desc="1768003695272_1600490707_1242750082_43893_4552_0_3_-";dur=1 Page title: Error <HTML><HEAD><TITLE>Error</TITLE></HEAD><BODY> An error occurred while processing your request.<p> Reference #30.d73a2217.1768003695.7b25145b <P>https://errors.edgesuite.net/30.d73a2217.1768003695.7b25145b</P> </BODY></HTML>
Open service 2.21.239.23:443 · n8n.dev.aaip.aldi.cloud
2026-01-09 23:30
HTTP/1.1 403 Forbidden Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 385 Expires: Fri, 09 Jan 2026 23:30:31 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 23:30:31 GMT Connection: close Strict-Transport-Security: max-age=15768000 ; includeSubDomains ; preload Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://n8n.dev.aaip.aldi.cloud/" on this server.<P> Reference #18.d68c655f.1768001431.18e07a81 <P>https://errors.edgesuite.net/18.d68c655f.1768001431.18e07a81</P> </BODY> </HTML>
Open service 2.21.239.23:443 · careers.grandpacificresorts.com
2026-01-09 16:50
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Link: <https://careers.grandpacificresorts.com/wp-json/>; rel="https://api.w.org/" Link: <https://careers.grandpacificresorts.com/wp-json/wp/v2/pages/797>; rel="alternate"; title="JSON"; type="application/json" Link: <https://careers.grandpacificresorts.com/>; rel=shortlink X-Powered-By: WP Engine X-Cacheable: SHORT X-Cache-Group: normal cf-cache-status: DYNAMIC Server: cloudflare CF-RAY: 9bb56fb50d59d288-FRA X-Akamai-Transformed: 9 15339 0 pmb=mTOE,2 Expires: Fri, 09 Jan 2026 16:50:55 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 16:50:55 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Set-Cookie: __cf_bm=bUyQDOcCPtcHWjZawGkcwykrdJh7uOW3q9Av5McbKVU-1767977455-1.0.1.1-ioAWVOethlc5_JU7.C.EN1JWDFBFVlaNI307zkDuvJiRqgcEF4OvE5dmA5BggtixaEahqhhfAGBWW_v_bNTpmA3CgSjxThoonq8cPIZXEVo; path=/; expires=Fri, 09-Jan-26 17:20:55 GMT; domain=.careers.grandpacificresorts.com; HttpOnly; Secure; SameSite=None
Open service 2.21.239.23:443 · realtimeaddressenrichmentservice.gas.t02.cldsvc.net
2026-01-09 09:27
HTTP/1.1 404 Not Found Server: Microsoft-IIS/10.0 Request-Context: appId=cid-v1:e7333c99-052f-4377-9b6f-a68784705fe2 X-Powered-By: ASP.NET Content-Length: 0 Cache-Control: max-age=0 Date: Fri, 09 Jan 2026 09:27:40 GMT Connection: close Strict-Transport-Security: max-age=86400
Open service 2.21.239.23:443 · native.uat.jackiejackpot.com
2026-01-09 09:12
HTTP/1.1 403 Forbidden Mime-Version: 1.0 Content-Type: text/html Content-Length: 386 Expires: Fri, 09 Jan 2026 09:12:54 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 09:12:54 GMT Connection: close Alt-Svc: h3=":443"; ma=93600 Akamai-Cache-Status: NotCacheable from child Strict-Transport-Security: max-age=15768000 ; includeSubDomains ; preload Page title: Access Denied <HTML><HEAD> <TITLE>Access Denied</TITLE> </HEAD><BODY> <H1>Access Denied</H1> You don't have permission to access "http://native.uat.jackiejackpot.com/" on this server.<P> Reference #18.d78c655f.1767949974.1105659c <P>https://errors.edgesuite.net/18.d78c655f.1767949974.1105659c</P> </BODY> </HTML>
Open service 2.21.239.23:443 · loja.hyundai.pt
2026-01-09 09:11
HTTP/1.1 200 OK Link: <https://loja.hyundai.pt/wp-json/>; rel="https://api.w.org/", <https://loja.hyundai.pt/wp-json/wp/v2/pages/51>; rel="alternate"; type="application/json", <https://loja.hyundai.pt/>; rel=shortlink X-UA-Compatible: IE=Edge,chrome=1 Content-Type: text/html; charset=UTF-8 X-XSS-Protection: 1; mode=block Content-Security-Policy: script-src 'unsafe-inline' 'unsafe-eval' http: https: Access-Control-Allow-Headers: X-WP-Nonce X-WebKit-CSP: default-src 'self' X-Akamai-Transformed: 9 - 0 pmb=mRUM,1 Vary: user-agent Expires: Fri, 09 Jan 2026 09:11:22 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 09:11:22 GMT Transfer-Encoding: chunked Connection: close Connection: Transfer-Encoding Set-Cookie: PHPSESSID=0msi0qph064r51gbsaa472k9j9; path=/ Server-Timing: edge; dur=43 Server-Timing: origin; dur=602 Server-Timing: cdn-cache; desc=MISS Alt-Svc: h3=":443"; ma=93600 Strict-Transport-Security: max-age=15768000 ; preload Server-Timing: ak_p; desc="1767949881544_1600490711_285421822_64430_3856_13_16_-";dur=1
Open service 2.21.239.23:443 · realtimeaddressenrichmentservice.gas.t02.cldsvc.net
2026-01-02 08:01
HTTP/1.1 404 Not Found Server: Microsoft-IIS/10.0 Request-Context: appId=cid-v1:e7333c99-052f-4377-9b6f-a68784705fe2 X-Powered-By: ASP.NET Content-Length: 0 Cache-Control: max-age=0 Date: Fri, 02 Jan 2026 08:01:14 GMT Connection: close Strict-Transport-Security: max-age=86400
Open service 2.21.239.23:443 · realtimeaddressenrichmentservice.gas.t02.cldsvc.net
2025-12-23 02:44
HTTP/1.1 503 Service Unavailable Server: awselb/2.0 Content-Type: text/html Content-Length: 162 Cache-Control: max-age=0 Date: Tue, 23 Dec 2025 02:44:49 GMT Connection: close Strict-Transport-Security: max-age=86400 Page title: 503 Service Temporarily Unavailable <html> <head><title>503 Service Temporarily Unavailable</title></head> <body> <center><h1>503 Service Temporarily Unavailable</h1></center> </body> </html>
realtimeaddressenrichmentservice.gas.t02.cldsvc.net 3 scim.cloudcontactcenter-sit.nube.53.com 0 journal.lardennais.fr 0 remeng.rosselcdn.net 0 sgr.www-qa.burgerking.fr 0 artists.apple.com 1 webtest2.gpistudios.com 1 integrawebservice.com.br 0 n8n.dev.aaip.aldi.cloud 0 careers.grandpacificresorts.com 0 native.uat.jackiejackpot.com 0 loja.hyundai.pt 0