nginx
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d603073f8703073f8703073f8703073f8703073f87
GraphQL introspection enabled at /api/graphql Detected: GitLab
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62337d3d62337d3d62337d3d62337d3d62337d3d6
GraphQL introspection enabled at /api/graphql
Open service 35.159.40.115:443 · gitlab.kiwi.ki
2026-01-09 06:42
HTTP/1.1 302 Found
Server: nginx
Date: Fri, 09 Jan 2026 06:42:40 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 102
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://gitlab.kiwi.ki/users/sign_in
Nel: {"max_age": 0}
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KEGQWBV0H8VZYBZ1SJ4E7BPY","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KEGQWBV0H8VZYBZ1SJ4E7BPY
X-Runtime: 0.070947
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://gitlab.kiwi.ki/users/sign_in">redirected</a>.</body></html>
Open service 35.159.40.115:443 · gitlab.kiwi.ki
2026-01-02 02:37
HTTP/1.1 302 Found
Server: nginx
Date: Fri, 02 Jan 2026 02:37:48 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 102
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://gitlab.kiwi.ki/users/sign_in
Nel: {"max_age": 0}
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KDY92ZBQG9G6ST72W2KPKKMZ","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KDY92ZBQG9G6ST72W2KPKKMZ
X-Runtime: 0.067847
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://gitlab.kiwi.ki/users/sign_in">redirected</a>.</body></html>
Open service 35.159.40.115:443 · gitlab.kiwi.ki
2025-12-22 17:32
HTTP/1.1 302 Found
Server: nginx
Date: Mon, 22 Dec 2025 17:32:34 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 102
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://gitlab.kiwi.ki/users/sign_in
Nel: {"max_age": 0}
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KD3HXE97QPV28E3MSD633KAN","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KD3HXE97QPV28E3MSD633KAN
X-Runtime: 0.108384
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://gitlab.kiwi.ki/users/sign_in">redirected</a>.</body></html>
Open service 35.159.40.115:443 · gitlab.kiwi.ki
2025-12-20 21:10
HTTP/1.1 302 Found
Server: nginx
Date: Sat, 20 Dec 2025 21:10:36 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 102
Connection: close
Cache-Control: no-cache
Content-Security-Policy:
Location: https://gitlab.kiwi.ki/users/sign_in
Nel: {"max_age": 0}
Permissions-Policy: interest-cohort=()
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Gitlab-Meta: {"correlation_id":"01KCYSK7X8180C855TCDM6SWX1","version":"1"}
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 01KCYSK7X8180C855TCDM6SWX1
X-Runtime: 0.126719
X-Ua-Compatible: IE=edge
X-Xss-Protection: 1; mode=block
Strict-Transport-Security: max-age=63072000
Referrer-Policy: strict-origin-when-cross-origin
<html><body>You are being <a href="https://gitlab.kiwi.ki/users/sign_in">redirected</a>.</body></html>