{
  "surface": "api",
  "tool": {
    "name": "api-audit",
    "version": "0.1.0"
  },
  "timestamp": "2026-09-15T10:28:43.004Z",
  "baseUrl": "https://api.lughonline.com",
  "evidence": [
    {
      "endpoint": "GET /healthz",
      "method": "GET",
      "path": "/healthz",
      "samples": [
        166.53419299999996,
        164.18783099999973,
        166.72679299999982,
        164.45300099999986,
        167.60626999999977,
        163.1228460000002,
        164.98694300000034,
        164.066738,
        167.06113600000026,
        164.076454,
        166.24552700000004,
        164.85683599999948,
        166.12397299999975,
        163.61314000000039,
        165.95790299999953,
        163.2879699999994,
        166.4278209999993,
        163.81501600000047,
        166.36918200000036,
        163.31952300000012,
        165.9284120000002,
        163.80076700000063,
        166.23210999999992,
        163.65926200000013,
        166.12087599999995,
        163.68971600000077,
        166.0567000000001,
        163.45809800000006,
        166.2795299999998,
        164.4232090000005
      ],
      "ttfb": [
        166.28695300000027,
        163.94892600000003,
        166.57859699999972,
        164.08823099999972,
        167.3718829999998,
        163.0268070000002,
        164.86351300000024,
        163.97119999999995,
        166.84951200000023,
        163.86364700000013,
        166.12261800000033,
        164.7410500000001,
        166.00909899999988,
        163.4520709999997,
        165.8329109999995,
        163.1742489999997,
        166.30779799999982,
        163.69926099999975,
        166.19458700000087,
        163.23192000000017,
        165.8084400000007,
        163.67331100000047,
        166.09269200000017,
        163.55215399999997,
        165.99106500000016,
        163.50023500000043,
        165.9171210000004,
        163.3401190000004,
        166.03103900000042,
        164.29394899999988
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 15
    },
    {
      "endpoint": "GET /api/admin/leads",
      "method": "GET",
      "path": "/api/admin/leads",
      "samples": [
        163.85338800000045,
        166.22146799999973,
        164.09923399999934,
        168.76634000000013,
        164.37090900000112,
        166.5174930000012,
        163.98161499999878,
        166.0600030000005,
        164.44970999999896,
        166.57674699999916,
        163.83528599999954,
        167.97167900000022,
        164.68008499999996,
        166.17785100000037,
        163.6726030000009,
        166.17092100000082,
        164.65803400000004,
        166.40751199999977,
        163.94068100000004,
        168.3002239999987,
        165.30647599999975,
        167.36431100000118,
        164.01017199999842,
        166.69852900000114,
        163.59324500000002,
        166.28942199999983,
        163.35558200000014,
        166.67844499999956,
        164.09650200000033,
        166.1886570000006
      ],
      "ttfb": [
        163.70106399999986,
        166.08551500000067,
        163.9626189999999,
        168.6707920000008,
        164.01202000000012,
        166.40275900000051,
        163.86985599999934,
        165.94541000000027,
        164.3326019999986,
        166.46139199999925,
        163.72307699999874,
        167.85609300000033,
        164.56429900000148,
        166.06389800000034,
        163.55834999999934,
        166.05622800000128,
        164.53558599999997,
        166.2927980000004,
        163.82747999999992,
        168.1720750000004,
        165.17737599999964,
        167.23578200000156,
        163.87885800000004,
        166.59790200000134,
        163.45950599999924,
        166.1815209999986,
        163.2570479999995,
        166.55309099999977,
        163.8771740000011,
        166.06139000000076
      ],
      "status": 401,
      "expectedStatus": 401,
      "bytes": 24
    },
    {
      "endpoint": "GET /api/call/availability",
      "method": "GET",
      "path": "/api/call/availability",
      "samples": [
        167.08607699999993,
        164.35664599999836,
        166.58686900000066,
        164.31668200000058,
        166.35751100000016,
        165.96482000000105,
        166.2411839999986,
        163.96339500000067,
        166.41840500000035,
        163.8024949999999,
        166.43063799999982,
        163.9001270000008,
        166.48918700000104,
        163.8634089999996,
        167.98578799999996,
        164.19876300000033,
        166.16943199999878,
        163.85581500000262,
        165.90858500000104,
        163.4983289999982,
        166.56010799999785,
        164.04157000000123,
        166.61020199999984,
        164.29430100000172,
        166.37999400000263,
        164.00307800000155,
        166.52563499999815,
        163.58104299999832,
        166.2177019999981,
        164.05558599999858
      ],
      "ttfb": [
        166.9527190000008,
        164.22809699999925,
        166.47199499999988,
        164.18233200000032,
        166.23026500000014,
        165.8466900000003,
        166.12666099999842,
        163.8503839999994,
        166.3312019999994,
        163.68216100000063,
        166.25510100000065,
        163.7962239999997,
        166.3137999999999,
        163.75016799999867,
        167.85285099999965,
        164.08331800000087,
        166.08628699999826,
        163.74120100000073,
        165.79512400000021,
        163.3737770000007,
        166.444653999999,
        163.92616500000076,
        166.32502100000056,
        164.19038699999874,
        166.20091999999931,
        163.89899400000286,
        166.42145099999834,
        163.45879499999864,
        166.1048320000009,
        163.93968099999984
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 61
    },
    {
      "endpoint": "POST /api/audit/start",
      "method": "POST",
      "path": "/api/audit/start",
      "samples": [
        164.62072900000203,
        167.30333099999916,
        164.93668700000126,
        167.41971900000135,
        165.6871030000002,
        166.9943310000017,
        164.43297600000005,
        167.31636799999978,
        164.58899499999825,
        167.4943699999967,
        163.98955900000146,
        166.88363000000027,
        164.9335710000014,
        167.51257799999803,
        165.37614400000166,
        168.41408100000262,
        164.72036300000036,
        166.7039619999996,
        163.75802399999884,
        166.44802499999787,
        164.39857400000255,
        168.62251999999717,
        165.85473999999886,
        167.0938460000034,
        164.6999399999986,
        166.99609000000055,
        164.29623100000026,
        167.9904029999998,
        164.64117199999964,
        166.91832700000305
      ],
      "ttfb": [
        164.44493100000182,
        167.15844099999958,
        164.80981000000247,
        167.2899780000007,
        165.57464400000026,
        166.8818820000015,
        164.34041300000172,
        167.20536100000027,
        164.46299,
        167.36847599999965,
        163.87487500000134,
        166.74980099999812,
        164.83152999999947,
        167.35569599999872,
        165.25520900000265,
        168.29179300000033,
        164.60773300000074,
        166.53645999999935,
        163.64530399999785,
        166.3335619999998,
        164.27803900000072,
        168.5058629999985,
        165.73923500000092,
        166.98931100000118,
        164.58055800000147,
        166.88197800000125,
        164.18662700000277,
        167.87866500000018,
        164.524265,
        166.80311300000176
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 89
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "method": "POST",
      "path": "/api/audit/capture-email",
      "samples": [
        166.61251699999775,
        164.2583510000004,
        166.9448650000013,
        166.3793340000011,
        167.67758499999763,
        164.60452599999917,
        168.98418299999685,
        164.28756500000236,
        166.79161899999963,
        163.87147000000186,
        166.6614260000024,
        163.7664939999995,
        167.4229660000019,
        164.7280060000012,
        167.05565299999944,
        164.6181469999974,
        167.35197100000005,
        163.9200720000008,
        170.13195600000108,
        164.60224400000152,
        166.517910999999,
        163.85194799999954,
        167.48194800000056,
        164.12137299999813,
        166.46125699999902,
        164.0273930000003,
        167.46770599999945,
        164.6521270000012,
        166.77986299999975,
        165.10505999999805
      ],
      "ttfb": [
        166.52598500000022,
        164.15463799999998,
        166.83088300000236,
        166.29375400000208,
        167.56721899999684,
        164.48383199999807,
        168.90133799999967,
        164.1835510000019,
        166.67794700000013,
        163.76191599999947,
        166.51022400000147,
        163.65421499999866,
        167.20141299999887,
        164.61957400000028,
        166.8679740000007,
        164.50690000000031,
        167.26525000000038,
        163.7674369999986,
        170.01926600000297,
        164.5195300000014,
        166.43598799999745,
        163.7682019999993,
        167.37797499999942,
        164.0410529999972,
        166.35381599999891,
        163.93152399999963,
        167.35275199999887,
        164.55598800000007,
        166.6753779999999,
        164.9994340000012
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 34
    },
    {
      "endpoint": "POST /api/call/book",
      "method": "POST",
      "path": "/api/call/book",
      "samples": [
        164.8714280000022,
        167.14463999999862,
        164.0448469999974,
        166.513676999999,
        165.31171800000084,
        167.78304600000047,
        164.19168699999864,
        167.99229999999807,
        164.79572499999995,
        166.97199199999886,
        164.86695899999904,
        166.52737400000478,
        165.48189000000275,
        166.36012699999992,
        164.1753150000004,
        166.36405999999988,
        164.24911799999973,
        167.28280199999426,
        164.05041800000618,
        166.69433700000081,
        164.8474520000018,
        166.65916399999696,
        164.17355400000088,
        167.1038569999946,
        165.67359099999885,
        166.9575360000017,
        164.59923899999558,
        165.56231000000116,
        164.96127500000148,
        167.157398000003
      ],
      "ttfb": [
        164.75482100000227,
        167.0444439999992,
        163.93854799999826,
        166.40543500000058,
        165.2033560000018,
        167.6247110000004,
        164.09603900000002,
        167.88572199999908,
        164.67931899999894,
        166.86103500000172,
        164.72224899999856,
        166.41526500000327,
        165.31851599999936,
        166.25559200000134,
        164.07175200000347,
        166.2043229999981,
        164.143422000001,
        167.17742599999474,
        163.9448410000041,
        166.5977669999993,
        164.76539899999625,
        166.4944469999973,
        164.06534300000203,
        166.99575599999662,
        165.524093,
        166.7957549999992,
        164.49216899999738,
        165.45399799999723,
        164.84595999999874,
        167.04439799999818
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 99
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "method": "POST",
      "path": "/api/reports/{reportId}/retry-platform/{platform}",
      "samples": [
        166.74886600000173,
        163.66846699999587,
        166.91374399999768,
        163.86761999999726,
        165.96786099999736,
        164.06221599999844,
        166.14761700000236,
        163.43146699999488,
        166.68335499999375,
        163.6879059999992,
        166.38831299999583,
        165.030230999997,
        166.43470000000525,
        163.6016079999972,
        166.43902199999866,
        163.97467200000392,
        166.86328499999945,
        163.72884799999883,
        166.69842300000164,
        164.3369690000036,
        166.408543000005,
        164.2292280000038,
        166.04623400000128,
        163.76138899999933,
        166.64138499999535,
        164.0490159999972,
        166.32526099999814,
        164.07990599999903,
        167.76308199999767,
        163.80135600000358
      ],
      "ttfb": [
        166.64253699999972,
        163.52892599999905,
        166.7611990000005,
        163.76418700000067,
        165.8917089999959,
        163.91663400000107,
        166.0431729999982,
        163.3277139999991,
        166.5791609999942,
        163.53031300000293,
        166.30591899999854,
        164.92138800000248,
        166.29158300000563,
        163.4954099999959,
        166.25835599999846,
        163.8696659999987,
        166.71598000000085,
        163.61975399999938,
        166.59339800000453,
        164.2307310000033,
        166.25210200000583,
        164.1265870000061,
        165.94130900000164,
        163.65655400000105,
        166.52274399999442,
        163.94295799999963,
        166.1761039999983,
        163.9253779999999,
        167.639691999997,
        163.69082000000344
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 55
    }
  ],
  "audits": [
    {
      "endpoint": "GET /healthz",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7775158692332106,
      "weight": 3,
      "advice": "GET /healthz: reduce p95 latency (167ms) toward 100ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5153385986903206,
      "weight": 1,
      "advice": "GET /healthz: reduce p95 time to first byte (167ms) toward 50ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /healthz: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7742969846045266,
      "weight": 3,
      "advice": "GET /api/admin/leads: reduce p95 latency (168ms) toward 100ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5122074972692525,
      "weight": 1,
      "advice": "GET /api/admin/leads: reduce p95 time to first byte (168ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "error-envelope",
      "category": "contract",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/admin/leads: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7776167026237291,
      "weight": 3,
      "advice": "GET /api/call/availability: reduce p95 latency (167ms) toward 100ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5153173757489518,
      "weight": 1,
      "advice": "GET /api/call/availability: reduce p95 time to first byte (167ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/call/availability: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7741135267860205,
      "weight": 3,
      "advice": "POST /api/audit/start: reduce p95 latency (168ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5120255138035907,
      "weight": 1,
      "advice": "POST /api/audit/start: reduce p95 time to first byte (168ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/start: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7736676770930406,
      "weight": 3,
      "advice": "POST /api/audit/capture-email: reduce p95 latency (168ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.511558735926293,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: reduce p95 time to first byte (168ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7758349974542447,
      "weight": 3,
      "advice": "POST /api/call/book: reduce p95 latency (168ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5136625661493658,
      "weight": 1,
      "advice": "POST /api/call/book: reduce p95 time to first byte (167ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/call/book: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.7775669856126888,
      "weight": 3,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 latency (167ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.5153066180172713,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 time to first byte (167ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    }
  ],
  "scores": {
    "overall": 85.38471669976887,
    "categories": {
      "performance": 71.02591119938367,
      "reliability": null,
      "efficiency": 100,
      "contract": 100,
      "security": 80,
      "seo": null,
      "accessibility": null
    },
    "endpoints": [
      {
        "endpoint": "GET /healthz",
        "p50": 164.9218894999999,
        "p95": 166.91068165000007,
        "p99": 167.44818113999992,
        "errorRate": 0,
        "bytes": 15,
        "score": 87.76212004733298
      },
      {
        "endpoint": "GET /api/admin/leads",
        "p50": 165.68323950000013,
        "p95": 168.1523787499994,
        "p99": 168.63116635999972,
        "errorRate": 0,
        "bytes": 24,
        "score": 88.51792035229539
      },
      {
        "endpoint": "GET /api/call/availability",
        "p50": 165.93670250000105,
        "p95": 166.8719332499999,
        "p99": 167.72487180999994,
        "errorRate": 0,
        "bytes": 61,
        "score": 87.7642035823714
      },
      {
        "endpoint": "POST /api/audit/start",
        "p50": 166.15138249999836,
        "p95": 168.22342590000136,
        "p99": 168.56207268999876,
        "errorRate": 0,
        "bytes": 89,
        "score": 85.5162269057535
      },
      {
        "endpoint": "POST /api/audit/capture-email",
        "p50": 166.42029550000007,
        "p95": 168.3962138999972,
        "p99": 169.79910182999984,
        "errorRate": 0,
        "bytes": 34,
        "score": 85.50053710613405
      },
      {
        "endpoint": "POST /api/call/book",
        "p50": 165.6179505,
        "p95": 167.55793619999767,
        "p99": 167.93161633999875,
        "errorRate": 0,
        "bytes": 99,
        "score": 85.57537007401825
      },
      {
        "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
        "p50": 165.49904599999718,
        "p95": 166.89103744999846,
        "p99": 167.51677397999768,
        "errorRate": 0,
        "bytes": 55,
        "score": 85.63484847700293
      }
    ]
  }
}
