nginx
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d603073f8703073f8703073f8703073f8703073f87
GraphQL introspection enabled at /api/graphql Detected: GitLab
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62337d3d62337d3d62337d3d62337d3d62337d3d6
GraphQL introspection enabled at /api/graphql
Open service 3.81.2.104:443 · studio.wevr.com
2026-01-09 20:27
HTTP/1.1 302 Found
Server: nginx
Date: Fri, 09 Jan 2026 20:27:59 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 103
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://studio.wevr.com/users/sign_in
Nel: {"max_age": 0}
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KEJ73J83ZHPYFN6M0MPA1F5R","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KEJ73J83ZHPYFN6M0MPA1F5R
X-Runtime: 0.041038
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://studio.wevr.com/users/sign_in">redirected</a>.</body></html>
Open service 3.81.2.104:443 · studio.wevr.com
2026-01-02 17:21
HTTP/1.1 302 Found
Server: nginx
Date: Fri, 02 Jan 2026 17:21:17 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://studio.wevr.com/users/sign_in
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KDZVMNZ2HX36B08DAAJX4MRQ","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KDZVMNZ2HX36B08DAAJX4MRQ
X-Runtime: 0.033827
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://studio.wevr.com/users/sign_in">redirected</a>.</body></html>
Open service 3.81.2.104:443 · studio.wevr.com
2025-12-23 01:29
HTTP/1.1 302 Found
Server: nginx
Date: Tue, 23 Dec 2025 01:29:21 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://studio.wevr.com/users/sign_in
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KD4D6EK46G8PQSTSVZ98C9AM","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KD4D6EK46G8PQSTSVZ98C9AM
X-Runtime: 0.040534
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://studio.wevr.com/users/sign_in">redirected</a>.</body></html>
Open service 3.81.2.104:443 · studio.wevr.com
2025-12-20 14:57
HTTP/1.1 302 Found
Server: nginx
Date: Sat, 20 Dec 2025 14:57:34 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://studio.wevr.com/users/sign_in
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KCY48618570T3P5FD53X1FTS","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KCY48618570T3P5FD53X1FTS
X-Runtime: 0.033727
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://studio.wevr.com/users/sign_in">redirected</a>.</body></html>