{
  "surface": "api",
  "tool": {
    "name": "api-audit",
    "version": "0.1.0"
  },
  "timestamp": "2026-08-12T16:03:55.447Z",
  "baseUrl": "https://api.lughonline.com",
  "evidence": [
    {
      "endpoint": "GET /healthz",
      "method": "GET",
      "path": "/healthz",
      "samples": [
        101.76676700000007,
        101.80821000000014,
        101.07135900000003,
        103.43850100000009,
        102.33630300000004,
        101.40605499999992,
        101.55821500000002,
        101.963483,
        101.41085900000007,
        100.76767699999982,
        101.13414899999998,
        101.14819399999988,
        105.67710399999987,
        101.48026200000004,
        100.47173799999973,
        100.89931099999967,
        101.2248239999999,
        101.13345800000025,
        101.32181700000001,
        101.37249199999997,
        100.1995750000001,
        100.80110600000035,
        101.30076599999984,
        101.2369520000002,
        101.15930700000035,
        101.62413600000036,
        101.24760700000024,
        100.94834399999945,
        101.41132000000016,
        100.94830399999955
      ],
      "ttfb": [
        101.39996300000007,
        101.50423,
        100.83572000000004,
        102.71793300000013,
        102.09445400000004,
        101.25824600000033,
        101.37335099999973,
        101.76293600000008,
        101.18355199999996,
        100.58211200000005,
        100.99281900000005,
        101.01067999999987,
        105.53908999999976,
        101.31061100000034,
        100.33430399999997,
        100.76001499999984,
        101.08856199999991,
        100.99503300000015,
        101.1794060000002,
        101.23651999999993,
        100.05958700000019,
        100.66859000000022,
        101.15479899999991,
        101.09656399999994,
        101.02966500000048,
        101.48789399999987,
        101.1094320000002,
        100.81526699999995,
        101.23766299999988,
        100.76909799999976
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 15
    },
    {
      "endpoint": "GET /api/admin/leads",
      "method": "GET",
      "path": "/api/admin/leads",
      "samples": [
        100.10572599999978,
        101.59309900000062,
        102.30435299999954,
        101.00024099999973,
        101.84093799999937,
        100.89007700000002,
        100.1435419999998,
        101.22735699999976,
        102.10203200000069,
        100.733115,
        101.0045970000001,
        100.50544799999989,
        100.3227280000001,
        101.20462399999997,
        101.31021200000032,
        101.03951899999993,
        100.1704209999998,
        101.00788199999988,
        101.69902600000023,
        100.05254699999932,
        101.83945399999993,
        99.88935500000025,
        101.3079660000003,
        101.33327400000053,
        102.21775400000024,
        101.47367200000008,
        101.88615899999968,
        101.66096899999957,
        102.9102899999998,
        99.65045199999986
      ],
      "ttfb": [
        99.97189700000035,
        101.45553500000005,
        102.15632299999925,
        100.85948199999984,
        101.67242799999985,
        100.74374999999964,
        100.01386999999977,
        101.048452,
        101.96845399999984,
        100.5662570000004,
        100.83446499999991,
        100.37731799999983,
        100.15290600000026,
        101.07074599999942,
        101.18124100000023,
        100.90588100000059,
        100.03623200000038,
        100.8733430000002,
        101.56591900000058,
        99.92068199999994,
        101.70939199999975,
        99.75794099999985,
        101.17041300000074,
        101.20119800000066,
        102.08247399999982,
        101.3077859999994,
        101.71459500000037,
        101.51690599999984,
        102.69813599999998,
        99.5202590000008
      ],
      "status": 401,
      "expectedStatus": 401,
      "bytes": 24
    },
    {
      "endpoint": "GET /api/call/availability",
      "method": "GET",
      "path": "/api/call/availability",
      "samples": [
        100.47438200000033,
        100.92535999999927,
        102.47285200000078,
        100.59639199999947,
        100.91070799999943,
        100.91553600000043,
        101.14875100000063,
        101.35394400000041,
        101.31002900000021,
        100.64508399999977,
        102.59311999999954,
        101.21492899999976,
        99.74513200000001,
        101.3152769999997,
        101.99770799999897,
        102.92193800000132,
        101.21132300000136,
        101.83043100000032,
        101.86576299999979,
        101.42640199999914,
        101.26844000000165,
        101.12785600000097,
        101.15621499999907,
        101.06375200000002,
        101.38756199999989,
        100.11570799999936,
        99.72936800000025,
        100.90901900000063,
        101.89083299999947,
        101.79768800000056
      ],
      "ttfb": [
        100.3447500000002,
        100.76847699999962,
        102.341147000001,
        100.46464699999888,
        100.77601800000048,
        100.78047499999957,
        101.0242760000001,
        101.2253440000004,
        101.13207599999987,
        100.52239299999928,
        102.41871199999878,
        101.09291799999846,
        99.62654599999951,
        101.19126400000096,
        101.87512699999934,
        102.7900120000013,
        101.03242800000044,
        101.6985450000011,
        101.72760800000106,
        101.29339499999878,
        101.13879800000177,
        100.99415800000133,
        101.02308799999992,
        100.88141200000064,
        101.20391000000018,
        99.99121399999967,
        99.59634099999857,
        100.7842639999999,
        101.76940300000024,
        101.61106099999961
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 61
    },
    {
      "endpoint": "POST /api/audit/start",
      "method": "POST",
      "path": "/api/audit/start",
      "samples": [
        103.1404879999991,
        103.43343099999947,
        101.35219300000063,
        104.57247599999937,
        102.71473999999944,
        101.5591170000007,
        103.24801099999968,
        101.50234099999943,
        101.96487900000102,
        101.42917200000011,
        102.97737799999959,
        102.69194299999981,
        102.5957729999991,
        102.27238500000021,
        102.26607400000103,
        101.68113300000005,
        102.41436599999906,
        101.20749599999908,
        102.77015199999914,
        100.16854700000113,
        103.35954499999934,
        103.28970000000118,
        102.5172190000012,
        101.49595099999897,
        101.70023600000059,
        102.5080369999996,
        101.71162899999945,
        100.45995000000039,
        101.85680700000012,
        102.41422299999977
      ],
      "ttfb": [
        102.93803799999841,
        103.30379899999934,
        101.22616600000038,
        104.254234,
        102.58459799999946,
        101.38741300000038,
        103.12111299999924,
        101.37431099999958,
        101.83671900000081,
        101.29998100000012,
        102.84727500000008,
        102.49409000000014,
        102.46570999999858,
        102.08292400000028,
        102.13785400000052,
        101.51085099999909,
        102.2789159999993,
        101.07790399999976,
        102.6344709999994,
        100.04030700000112,
        103.22697799999878,
        103.16680799999995,
        102.35027199999968,
        101.36101099999905,
        101.56679800000165,
        102.37394900000072,
        101.57981300000029,
        100.29217100000096,
        101.6882970000006,
        102.2840699999997
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 89
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "method": "POST",
      "path": "/api/audit/capture-email",
      "samples": [
        101.59420200000022,
        102.59336400000029,
        102.03409099999953,
        104.27605599999879,
        103.51832599999943,
        102.8028609999983,
        103.01118700000006,
        103.79237300000023,
        102.36116799999945,
        103.5453379999999,
        103.5615230000003,
        105.10991899999863,
        104.00407099999939,
        103.75221299999976,
        101.81564799999978,
        102.58786999999938,
        103.09067499999946,
        102.54709000000003,
        103.38041599999997,
        103.26116800000091,
        103.28592700000081,
        104.05356700000266,
        103.79811999999947,
        103.27625600000101,
        104.02563200000077,
        103.83018300000185,
        104.03528699999879,
        103.59220700000151,
        103.15897699999914,
        103.5089229999976
      ],
      "ttfb": [
        101.46018399999957,
        102.46810800000094,
        101.91161000000102,
        104.14976899999965,
        103.39531399999942,
        102.67645299999822,
        102.88394899999912,
        103.66714800000045,
        102.24014899999747,
        103.42499999999927,
        103.40366899999935,
        104.98704699999871,
        103.88041799999701,
        103.56644799999776,
        101.64471499999854,
        102.41153899999699,
        102.95721699999922,
        102.41669600000023,
        103.25250600000072,
        103.09088500000144,
        103.15999999999985,
        103.929032,
        103.67199299999993,
        103.15085000000181,
        101.97108800000206,
        103.70845299999928,
        103.89207499999975,
        103.42613100000017,
        103.02548000000024,
        103.3487759999989
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 34
    },
    {
      "endpoint": "POST /api/call/book",
      "method": "POST",
      "path": "/api/call/book",
      "samples": [
        103.4534190000013,
        103.52265000000261,
        101.32501700000284,
        103.45416900000055,
        102.56214099999852,
        101.81351399999767,
        102.45544399999926,
        101.86687600000005,
        101.86145200000101,
        102.44605800000136,
        103.17247100000168,
        102.9801179999995,
        101.30187300000034,
        102.80220300000292,
        101.42703899999833,
        102.75074099999983,
        102.90658900000199,
        101.67531299999973,
        101.84695199999987,
        100.63498400000026,
        102.81304999999702,
        101.17957099999694,
        103.24145599999974,
        101.28986499999883,
        102.96899000000121,
        103.04676699999982,
        102.56308799999897,
        101.8800110000011,
        101.34123199999885,
        103.24444700000095
      ],
      "ttfb": [
        103.32866400000057,
        103.3981350000031,
        101.20220500000141,
        103.28070300000036,
        102.43758600000001,
        101.68833799999993,
        102.33592700000008,
        101.75095500000316,
        101.74155400000018,
        102.33082800000193,
        103.05525800000032,
        102.86157299999832,
        101.13075899999967,
        102.67767900000035,
        101.29083700000047,
        102.61775399999897,
        102.73847999999998,
        101.54297700000097,
        101.71932300000117,
        100.50013400000171,
        102.6304799999998,
        101.04522199999701,
        103.12256999999954,
        101.17079899999953,
        102.82276300000012,
        102.88233400000172,
        102.43849399999817,
        101.75276300000041,
        101.21340299999792,
        103.1079150000005
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 99
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "method": "POST",
      "path": "/api/reports/{reportId}/retry-platform/{platform}",
      "samples": [
        101.7293150000005,
        102.05234500000006,
        101.20812600000136,
        101.40627399999721,
        100.51786399999764,
        101.90520400000241,
        100.79652399999759,
        101.17268300000069,
        100.76101099999869,
        101.27277200000026,
        99.68957600000067,
        101.04101699999956,
        101.3905130000021,
        101.32900299999892,
        100.94253300000128,
        102.35273800000141,
        102.21151900000041,
        101.44130099999893,
        100.59718900000007,
        101.00232900000265,
        101.35394399999859,
        102.44812000000093,
        101.12480000000141,
        102.36290200000076,
        100.72079699999813,
        100.91261999999915,
        100.94001199999911,
        101.13771400000041,
        102.03770799999984,
        100.95565600000191
      ],
      "ttfb": [
        101.59119099999953,
        101.91149600000062,
        101.07606099999975,
        101.22933199999898,
        100.37677500000063,
        101.78298300000097,
        100.67526499999803,
        101.04679600000236,
        100.63051799999812,
        101.15027000000191,
        99.5600740000009,
        100.915481,
        101.2692730000017,
        101.20809400000144,
        100.82162400000016,
        102.21929000000091,
        102.08340899999894,
        101.30908500000078,
        100.44183899999916,
        100.83646399999998,
        101.15309599999819,
        102.3276220000007,
        100.99453700000231,
        102.24126200000319,
        100.59861599999931,
        100.79368400000021,
        100.78567399999883,
        100.96679099999892,
        101.91464500000075,
        100.83073100000183
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 55
    }
  ],
  "audits": [
    {
      "endpoint": "GET /healthz",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9874052387378853,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7113659955087147,
      "weight": 1,
      "advice": "GET /healthz: reduce p95 time to first byte (102ms) toward 50ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /healthz: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9902713488959192,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.712602542083354,
      "weight": 1,
      "advice": "GET /api/admin/leads: reduce p95 time to first byte (102ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "error-envelope",
      "category": "contract",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/admin/leads: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9891109248240262,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7115764621204032,
      "weight": 1,
      "advice": "GET /api/call/availability: reduce p95 time to first byte (102ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/call/availability: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9854786955572213,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7081111872959585,
      "weight": 1,
      "advice": "POST /api/audit/start: reduce p95 time to first byte (103ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/start: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.982232589012325,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7050783574775956,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: reduce p95 time to first byte (104ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9852534202375547,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7079637089575666,
      "weight": 1,
      "advice": "POST /api/call/book: reduce p95 time to first byte (103ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/call/book: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9898768159798856,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.7121760620415042,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 time to first byte (102ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    }
  ],
  "scores": {
    "overall": 93.16664475252618,
    "categories": {
      "performance": 91.77771934006982,
      "reliability": null,
      "efficiency": 100,
      "contract": 100,
      "security": 80,
      "seo": null,
      "accessibility": null
    },
    "endpoints": [
      {
        "endpoint": "GET /healthz",
        "p50": 101.27418650000004,
        "p95": 102.94251190000007,
        "p99": 105.02790912999994,
        "errorRate": 0,
        "bytes": 15,
        "score": 93.87838304979533
      },
      {
        "endpoint": "GET /api/admin/leads",
        "p50": 101.21599049999986,
        "p95": 102.26538344999986,
        "p99": 102.73456826999973,
        "errorRate": 0,
        "bytes": 24,
        "score": 94.36839026738697
      },
      {
        "endpoint": "GET /api/call/availability",
        "p50": 101.21312600000056,
        "p95": 102.53899940000011,
        "p99": 102.82658078000081,
        "errorRate": 0,
        "bytes": 61,
        "score": 93.91784619698134
      },
      {
        "endpoint": "POST /api/audit/start",
        "p50": 102.34330399999999,
        "p95": 103.40018229999941,
        "p99": 104.2421529499994,
        "errorRate": 0,
        "bytes": 89,
        "score": 92.73519368667499
      },
      {
        "endpoint": "POST /api/audit/capture-email",
        "p50": 103.44466949999878,
        "p95": 104.17593595000054,
        "p99": 104.86809872999868,
        "errorRate": 0,
        "bytes": 34,
        "score": 92.6241402131702
      },
      {
        "endpoint": "POST /api/call/book",
        "p50": 102.50879249999889,
        "p95": 103.45383150000089,
        "p99": 103.50279051000201,
        "errorRate": 0,
        "bytes": 99,
        "score": 92.72803451887157
      },
      {
        "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
        "p50": 101.19040450000102,
        "p95": 102.35832820000105,
        "p99": 102.42340678000087,
        "errorRate": 0,
        "bytes": 55,
        "score": 92.88527399983619
      }
    ]
  }
}
