Exposed API Schema


Kayran has detected that the API Schema of your asset is Exposed.
An Exposed API Schema means that the entire Structure of your API can be achieved by an attacker.

If an attacker gets his hands on your API Schema, this will help him plan and execute a variety of attacks.

Among other things, it is possible that obtaining the Schema will help the attacker to find vulnerabilities in your API structure. Such as problems that are related to bypassing permissions and even find ways to attack the users using the API.


To prevent Exposed API Schema, make sure that access to the API Schema is restricted.

Make sure that only Authorized Personal can access it.

