All Tests  /  Test 5798

Test Id

Test 5798

Test Trace Id

e572d58d-cc49-44b5-a949-9699bce4bd94

Timestamp

Tue, 23 Jun 2026 21:38:29 GMT

Scenario

Send a 'happy' flow request with all fields and all headers and checks if the response headers match those declared in the contract

Expected Result

Should return 2XX

Result

Result Details

The following keywords were detected in the response which might suggest an error details leak: [forbidden]

Contract Path

/api/alerts/{alertId}/contain

Fuzzer

ResponseHeadersMatchContractHeaders

Full Request Path

https://qa-api.puk3p.online/api/alerts/ZNEMDVDQJOMUS/contain

Http Method

post
Request Details
Payload
"{}"
Request Details
Headers
[
  {
    "key": "Accept",
    "value": "application/json"
  },
  {
    "key": "Content-Type",
    "value": "application/json"
  },
  {
    "key": "User-Agent",
    "value": "cats/13.8.1-SNAPSHOT (Test 5798 - ResponseHeadersMatchContractHeaders)"
  },
  {
    "key": "X-Cats-Trace-Id",
    "value": "e572d58d-cc49-44b5-a949-9699bce4bd94"
  }
]
Request Details
cURL
curl  -X POST \
     -H "Accept: application/json" \
-H "Content-Type: application/json" \
-H "User-Agent: cats/13.8.1-SNAPSHOT (Test 5798 - ResponseHeadersMatchContractHeaders)" \
-H "X-Cats-Trace-Id: e572d58d-cc49-44b5-a949-9699bce4bd94" \
 \
      -d '"{}"' \
      https://qa-api.puk3p.online/api/alerts/ZNEMDVDQJOMUS/contain
Response
{
  "responseCode": 403,
  "httpMethod": "POST",
  "responseTimeInMs": "130",
  "numberOfWordsInResponse": "1",
  "numberOfLinesInResponse": "1",
  "contentLengthInBytes": "116",
  "jsonBody": {
    "timestamp": "2026-06-23T21:38:30.055Z",
    "status": 403,
    "error": "Forbidden",
    "path": "/api/alerts/ZNEMDVDQJOMUS/contain"
  },
  "headers": [
    {
      "key": "cache-control",
      "value": "no-cache, no-store, max-age=0, must-revalidate"
    },
    {
      "key": "content-type",
      "value": "application/json"
    },
    {
      "key": "date",
      "value": "Tue, 23 Jun 2026 21:38:30 GMT"
    },
    {
      "key": "expires",
      "value": "0"
    },
    {
      "key": "pragma",
      "value": "no-cache"
    },
    {
      "key": "server",
      "value": "nginx/1.24.0 (Ubuntu)"
    },
    {
      "key": "strict-transport-security",
      "value": "max-age=31536000 ; includeSubDomains"
    },
    {
      "key": "vary",
      "value": "Origin"
    },
    {
      "key": "x-content-type-options",
      "value": "nosniff"
    },
    {
      "key": "x-frame-options",
      "value": "DENY"
    },
    {
      "key": "x-xss-protection",
      "value": "0"
    }
  ],
  "responseContentType": "application/json"
}
CATS Replay
cats replay Test5798