{
  "surface": "api",
  "tool": {
    "name": "api-audit",
    "version": "0.1.0"
  },
  "timestamp": "2026-08-19T21:48:19.413Z",
  "baseUrl": "https://api.lughonline.com",
  "evidence": [
    {
      "endpoint": "GET /healthz",
      "method": "GET",
      "path": "/healthz",
      "samples": [
        129.07617600000003,
        129.6073510000001,
        130.02335200000016,
        129.999996,
        129.56524100000024,
        129.00407500000028,
        132.93533500000012,
        128.78304400000025,
        129.23425700000007,
        128.7029110000003,
        129.12625100000014,
        128.71159399999988,
        128.9391969999997,
        128.74116600000025,
        128.93080899999995,
        128.89644499999986,
        128.97363799999994,
        130.03557000000046,
        129.23332800000026,
        128.71355700000004,
        128.8940389999998,
        128.54096300000037,
        128.86958700000014,
        128.5178020000003,
        128.72806600000058,
        128.85082499999953,
        128.84610800000064,
        128.41161300000022,
        128.6891770000002,
        128.71858499999962
      ],
      "ttfb": [
        128.84071599999993,
        129.43353800000023,
        129.89834500000006,
        129.59601500000008,
        129.4238190000001,
        128.9075560000001,
        132.84227899999996,
        128.6455179999998,
        129.08454200000006,
        128.56869899999992,
        129.04041000000007,
        128.62403200000017,
        128.85773199999994,
        128.65821400000004,
        128.85022899999967,
        128.8154300000001,
        128.89055999999982,
        129.9545519999997,
        129.14684000000034,
        128.6328880000001,
        128.8114829999995,
        128.45642800000041,
        128.7334919999994,
        128.43571799999972,
        128.6439330000003,
        128.77066300000024,
        128.7147640000003,
        128.3277960000005,
        128.6040669999993,
        128.59131199999956
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 15
    },
    {
      "endpoint": "GET /api/admin/leads",
      "method": "GET",
      "path": "/api/admin/leads",
      "samples": [
        127.71289200000047,
        128.91172300000017,
        128.41534599999977,
        129.56097000000045,
        129.0465720000002,
        129.68436800000018,
        129.9591989999999,
        129.2369660000004,
        129.03079199999956,
        129.00726699999996,
        128.88553299999967,
        129.46516000000065,
        128.89748800000052,
        129.06914099999995,
        129.27213400000073,
        129.49996099999953,
        129.4886179999994,
        129.27731200000017,
        129.7225469999994,
        130.34823900000083,
        128.53493900000103,
        128.926383,
        128.9188749999994,
        133.7510230000007,
        128.9629849999983,
        129.6381710000005,
        129.83215500000006,
        130.36083199999848,
        130.31507600000077,
        128.92281199999888
      ],
      "ttfb": [
        127.62255000000005,
        128.82107499999984,
        128.3161309999996,
        129.47318500000074,
        128.92569600000024,
        129.60206599999947,
        129.8628779999999,
        129.13932999999997,
        128.94501299999956,
        128.92852099999982,
        128.80522999999994,
        129.3370360000008,
        128.81452499999978,
        128.94312199999968,
        129.1851540000007,
        129.41821399999935,
        129.4089039999999,
        129.14191500000015,
        129.64012899999943,
        130.26680099999976,
        128.45665700000063,
        128.8379909999985,
        128.76950600000055,
        133.61702200000036,
        128.83594899999844,
        129.5554570000004,
        129.74700299999859,
        130.280612999999,
        130.13719700000001,
        128.83247200000005
      ],
      "status": 401,
      "expectedStatus": 401,
      "bytes": 24
    },
    {
      "endpoint": "GET /api/call/availability",
      "method": "GET",
      "path": "/api/call/availability",
      "samples": [
        128.36907400000018,
        128.92867900000056,
        129.43302100000074,
        129.54837299999963,
        128.797595,
        128.98494500000015,
        130.70729500000016,
        130.1675579999992,
        128.81091600000036,
        128.85458300000028,
        128.97729599999911,
        128.61767900000086,
        128.78725799999847,
        129.12766200000078,
        129.18407600000137,
        128.98724700000093,
        128.89855700000044,
        128.9652760000008,
        129.0545320000001,
        129.62592600000062,
        129.1216999999997,
        129.03016500000012,
        129.35361100000046,
        128.58271799999966,
        129.08178699999917,
        129.17307400000027,
        129.91459399999985,
        129.59603699999934,
        129.33871100000033,
        128.79818999999952
      ],
      "ttfb": [
        128.28395499999897,
        128.80963300000076,
        129.35179000000062,
        129.46061199999895,
        128.7041029999982,
        128.89610600000015,
        130.62390200000118,
        130.08964000000014,
        128.73053400000026,
        128.7771990000001,
        128.84835799999928,
        128.53989399999955,
        128.66512899999907,
        129.04449999999997,
        129.09548000000177,
        128.906164,
        128.82068199999958,
        128.88334399999985,
        128.97050099999979,
        129.50553200000104,
        129.03643300000113,
        128.94699799999944,
        129.25943700000062,
        128.49521399999867,
        128.94224100000065,
        129.09002000000146,
        129.82933100000082,
        129.4599589999998,
        129.25195499999973,
        128.71812599999976
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 61
    },
    {
      "endpoint": "POST /api/audit/start",
      "method": "POST",
      "path": "/api/audit/start",
      "samples": [
        130.0085450000006,
        130.42069999999876,
        131.2538399999994,
        129.86007699999936,
        130.40003799999977,
        128.85001700000066,
        129.98816100000113,
        128.90141900000162,
        129.72974500000055,
        130.1108380000005,
        129.22678900000028,
        130.9267609999988,
        131.95088300000134,
        129.64421299999958,
        129.67502299999978,
        129.78374099999928,
        129.75402600000234,
        129.66138900000078,
        129.27263099999982,
        130.73360999999932,
        129.284721,
        129.76474700000108,
        129.21546399999716,
        128.76692800000092,
        129.7954690000006,
        130.2577179999971,
        129.6036499999973,
        131.91751600000134,
        129.90819099999862,
        130.39604600000166
      ],
      "ttfb": [
        129.89144300000044,
        130.34064399999988,
        131.17564700000003,
        129.77917399999933,
        130.31306799999948,
        128.74857200000042,
        129.90254300000015,
        128.8222730000016,
        129.6468559999994,
        130.02536500000133,
        129.14664500000072,
        130.8410920000024,
        131.8721689999984,
        129.5333869999995,
        129.5948219999991,
        129.70366300000023,
        129.6643980000008,
        129.56960700000127,
        129.18141800000012,
        130.65222100000028,
        129.20391099999688,
        129.6847119999984,
        129.13335099999676,
        128.68888100000186,
        129.71628699999928,
        130.18074200000046,
        129.523707999997,
        131.8340989999997,
        129.78366399999868,
        130.31345300000248
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 89
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "method": "POST",
      "path": "/api/audit/capture-email",
      "samples": [
        130.62373800000205,
        131.14648300000044,
        130.48221100000228,
        129.52825099999973,
        130.37476900000183,
        128.75627600000007,
        130.6062639999982,
        134.14514300000155,
        130.35768099999768,
        129.3252969999994,
        131.3700370000006,
        130.66076500000054,
        130.66079999999783,
        130.75625799999762,
        129.62437599999976,
        129.23671599999943,
        129.95205899999928,
        129.66927199999918,
        129.68964399999822,
        129.42954800000007,
        130.15407300000152,
        129.4626959999987,
        129.70153500000015,
        128.7932669999973,
        129.69544799999858,
        132.862086000001,
        129.98872699999993,
        129.17606700000033,
        130.18192400000044,
        129.39186599999812
      ],
      "ttfb": [
        130.49734800000078,
        131.04184800000075,
        130.38167700000122,
        129.42756999999983,
        130.27709600000162,
        128.65398199999981,
        130.50147099999958,
        134.05001800000173,
        130.25810099999944,
        129.19403700000112,
        131.23506800000177,
        130.5689910000001,
        130.5704310000001,
        130.66984599999705,
        129.53996299999926,
        129.15226600000096,
        129.86218599999847,
        129.577616999999,
        129.5979750000006,
        129.33325799999875,
        130.0622770000009,
        129.34273100000064,
        129.6179239999983,
        128.71386299999722,
        129.61139299999923,
        132.74592699999994,
        129.9001329999992,
        129.05042200000025,
        130.1024899999975,
        129.27889399999913
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 34
    },
    {
      "endpoint": "POST /api/call/book",
      "method": "POST",
      "path": "/api/call/book",
      "samples": [
        129.12180699999954,
        128.98703399999795,
        128.71229999999923,
        129.4415509999999,
        129.0695259999993,
        128.98363800000152,
        129.09549699999843,
        129.51127500000075,
        128.43754500000068,
        129.8770540000005,
        129.27519700000266,
        129.51126600000134,
        129.0001599999996,
        129.63913400000092,
        128.88885500000106,
        129.85376499999984,
        129.21575999999914,
        129.35343199999988,
        129.9262389999967,
        129.61534900000333,
        128.8730620000024,
        130.0286559999986,
        128.88292,
        129.3925930000005,
        128.6682980000005,
        130.1731800000016,
        129.86542499999996,
        131.4028240000007,
        129.08191400000214,
        129.1989199999989
      ],
      "ttfb": [
        129.0400010000012,
        128.90882799999963,
        128.62934699999823,
        129.36338200000318,
        128.9897600000004,
        128.90832800000135,
        129.01473700000133,
        129.43376700000226,
        128.36123299999963,
        129.795312000002,
        129.19785899999988,
        129.432251000002,
        128.9237890000004,
        129.55922799999826,
        128.80576199999996,
        129.77893399999812,
        129.13930699999764,
        129.27900300000329,
        129.84770099999878,
        129.5415090000024,
        128.79691100000127,
        129.9546999999984,
        128.80514599999879,
        129.31110900000203,
        128.59140800000023,
        130.09410900000148,
        129.7859419999986,
        131.32800100000168,
        129.00244700000258,
        129.1224340000008
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 99
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "method": "POST",
      "path": "/api/reports/{reportId}/retry-platform/{platform}",
      "samples": [
        130.50058999999965,
        129.16331799999898,
        129.03111299999728,
        130.1021870000004,
        128.57561700000224,
        128.4944890000006,
        128.97976700000072,
        129.12104700000054,
        130.17572999999902,
        129.0200990000012,
        130.4604029999973,
        128.78915400000187,
        129.3920900000012,
        128.5916099999995,
        128.76481799999965,
        128.4036390000001,
        128.71612700000333,
        128.47109499999715,
        128.99290299999848,
        129.47801900000195,
        129.33493799999997,
        128.74016699999993,
        130.00219700000162,
        128.5722739999983,
        128.92165699999896,
        130.14327699999922,
        128.83830099999977,
        129.26120100000117,
        130.3729699999967,
        128.6528479999979
      ],
      "ttfb": [
        130.42203599999993,
        129.08196899999894,
        128.94741900000008,
        130.02144100000078,
        128.49613800000225,
        128.41802500000267,
        128.89871499999936,
        129.03904899999907,
        130.05530200000067,
        128.90316200000234,
        130.3839089999965,
        128.71527300000162,
        129.31660000000193,
        128.51511200000095,
        128.68941300000006,
        128.32640000000174,
        128.64267800000016,
        128.3952879999997,
        128.92004299999826,
        129.39239599999928,
        129.193894,
        128.6669350000011,
        129.92446399999972,
        128.49377699999968,
        128.81237200000032,
        130.06719000000157,
        128.73554700000022,
        129.12172900000223,
        130.30112499999814,
        128.57585799999651
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 55
    }
  ],
  "audits": [
    {
      "endpoint": "GET /healthz",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8859561973091497,
      "weight": 3,
      "advice": "GET /healthz: reduce p95 latency (130ms) toward 100ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6156929539762188,
      "weight": 1,
      "advice": "GET /healthz: reduce p95 time to first byte (130ms) toward 50ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /healthz: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.884871755813638,
      "weight": 3,
      "advice": "GET /api/admin/leads: reduce p95 latency (130ms) toward 100ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6146253738048244,
      "weight": 1,
      "advice": "GET /api/admin/leads: reduce p95 time to first byte (130ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "error-envelope",
      "category": "contract",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/admin/leads: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8858772068948579,
      "weight": 3,
      "advice": "GET /api/call/availability: reduce p95 latency (130ms) toward 100ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6155590425985521,
      "weight": 1,
      "advice": "GET /api/call/availability: reduce p95 time to first byte (130ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/call/availability: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8806818691667512,
      "weight": 3,
      "advice": "POST /api/audit/start: reduce p95 latency (132ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6107414240343113,
      "weight": 1,
      "advice": "POST /api/audit/start: reduce p95 time to first byte (132ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/start: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8787992160922338,
      "weight": 3,
      "advice": "POST /api/audit/capture-email: reduce p95 latency (132ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6091285366518898,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: reduce p95 time to first byte (132ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8856955176550354,
      "weight": 3,
      "advice": "POST /api/call/book: reduce p95 latency (130ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.615376794231283,
      "weight": 1,
      "advice": "POST /api/call/book: reduce p95 time to first byte (130ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/call/book: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.884652280536775,
      "weight": 3,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 latency (130ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.614402222220319,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 time to first byte (130ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    }
  ],
  "scores": {
    "overall": 89.3595470686465,
    "categories": {
      "performance": 81.62545884972401,
      "reliability": null,
      "efficiency": 100,
      "contract": 100,
      "security": 80,
      "seo": null,
      "accessibility": null
    },
    "endpoints": [
      {
        "endpoint": "GET /healthz",
        "p50": 128.89524199999983,
        "p95": 130.03007190000034,
        "p99": 132.09440315000023,
        "errorRate": 0,
        "bytes": 15,
        "score": 90.91527071039754
      },
      {
        "endpoint": "GET /api/admin/leads",
        "p50": 129.25455000000056,
        "p95": 130.35516514999955,
        "p99": 132.76786761000008,
        "errorRate": 0,
        "bytes": 24,
        "score": 91.5120044223844
      },
      {
        "endpoint": "GET /api/call/availability",
        "p50": 129.04234850000012,
        "p95": 130.0537241999995,
        "p99": 130.55077126999987,
        "errorRate": 0,
        "bytes": 61,
        "score": 90.91252343172685
      },
      {
        "endpoint": "POST /api/audit/start",
        "p50": 129.78960499999994,
        "p95": 131.61886180000047,
        "p99": 131.94120657000133,
        "errorRate": 0,
        "bytes": 89,
        "score": 89.154669839431
      },
      {
        "endpoint": "POST /api/audit/capture-email",
        "p50": 129.9703929999996,
        "p95": 132.1906639500008,
        "p99": 133.7730564700014,
        "errorRate": 0,
        "bytes": 34,
        "score": 89.09153204285732
      },
      {
        "endpoint": "POST /api/call/book",
        "p50": 129.2454785000009,
        "p95": 130.10814420000025,
        "p99": 131.04622724000095,
        "errorRate": 0,
        "bytes": 99,
        "score": 89.32576823649035
      },
      {
        "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
        "p50": 129.00650099999984,
        "p95": 130.42105814999704,
        "p99": 130.48893576999896,
        "errorRate": 0,
        "bytes": 55,
        "score": 89.29007881591865
      }
    ]
  }
}
