{
  "surface": "api",
  "tool": {
    "name": "api-audit",
    "version": "0.1.0"
  },
  "timestamp": "2026-09-15T12:59:12.857Z",
  "baseUrl": "https://api.lughonline.com",
  "evidence": [
    {
      "endpoint": "GET /healthz",
      "method": "GET",
      "path": "/healthz",
      "samples": [
        123.49600800000007,
        123.49280199999998,
        122.12246600000003,
        124.85670500000015,
        124.30910799999992,
        125.73005300000023,
        125.62466799999993,
        123.97407900000007,
        125.10135300000002,
        124.69194199999993,
        125.01705700000002,
        125.14558399999987,
        124.72769900000003,
        124.5714579999999,
        124.7782360000001,
        125.16821100000016,
        123.37770600000022,
        123.3448669999998,
        123.30361300000004,
        123.50414999999975,
        124.77708700000039,
        124.92013700000007,
        122.03468900000007,
        122.87502399999994,
        123.11055299999953,
        123.15238599999975,
        123.55954199999996,
        122.169398,
        123.26556600000004,
        123.67820099999972
      ],
      "ttfb": [
        123.15897900000004,
        123.19357500000001,
        121.95371999999975,
        124.45169699999997,
        124.057863,
        125.581729,
        125.47792200000004,
        123.85470699999996,
        124.87825799999973,
        124.50590299999976,
        124.8706589999997,
        125.00779899999998,
        124.58757500000002,
        124.3996259999999,
        124.64370299999973,
        125.02896400000009,
        123.23814799999991,
        123.21375699999999,
        123.16690800000015,
        123.3590320000003,
        124.63978000000043,
        124.77851800000008,
        121.89344900000015,
        122.71850799999993,
        122.97876799999995,
        122.96827199999916,
        123.42065599999933,
        122.05148800000006,
        123.11761600000045,
        123.49674099999993
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 15
    },
    {
      "endpoint": "GET /api/admin/leads",
      "method": "GET",
      "path": "/api/admin/leads",
      "samples": [
        123.06417099999999,
        122.9805809999998,
        123.29930500000046,
        123.30890999999974,
        123.39935400000013,
        123.95975799999997,
        123.56716299999971,
        123.09646599999996,
        123.17452400000002,
        123.28712600000017,
        123.04819099999986,
        123.07268000000022,
        123.29632899999979,
        122.98843800000031,
        121.9092010000004,
        122.07957700000043,
        123.2868780000008,
        123.0404150000013,
        123.11850299999969,
        123.07419000000118,
        123.22165999999925,
        123.38665000000037,
        123.21505100000104,
        123.302506,
        123.02507700000024,
        123.37078099999962,
        124.03701400000136,
        123.07060900000033,
        124.802146,
        124.0354040000002
      ],
      "ttfb": [
        122.92212199999994,
        122.83822099999998,
        123.11237600000004,
        123.1754719999999,
        123.23062000000027,
        123.83891800000038,
        123.42885299999944,
        122.96584500000063,
        123.0344869999999,
        123.14507500000036,
        122.9169410000004,
        122.93303199999991,
        123.1560529999997,
        122.86928799999987,
        121.77721900000051,
        121.9338830000006,
        123.10007899999982,
        122.90094099999988,
        122.99020699999892,
        122.9240490000011,
        123.04154000000017,
        123.25497600000017,
        123.08327400000053,
        123.17316399999982,
        122.88741900000059,
        123.14208300000064,
        123.90037700000175,
        122.93604600000072,
        124.54961000000003,
        123.89839700000084
      ],
      "status": 401,
      "expectedStatus": 401,
      "bytes": 24
    },
    {
      "endpoint": "GET /api/call/availability",
      "method": "GET",
      "path": "/api/call/availability",
      "samples": [
        123.38606899999832,
        123.61721500000021,
        125.10410299999967,
        125.32028499999979,
        125.59687799999847,
        125.46843799999988,
        125.14096499999869,
        126.53786299999956,
        123.88295600000129,
        124.81817799999953,
        124.15733200000068,
        123.81064500000139,
        124.8117770000008,
        124.1258199999993,
        124.12576500000068,
        125.47289300000011,
        124.31823900000018,
        125.98180500000126,
        124.41572799999994,
        124.81797900000129,
        123.47933599999851,
        124.490174999999,
        125.34709199999998,
        123.17959900000096,
        122.89585999999872,
        123.56117799999993,
        123.33183699999972,
        123.61838900000112,
        124.41476900000089,
        123.28875899999912
      ],
      "ttfb": [
        123.24789899999996,
        123.47744899999998,
        124.90475700000025,
        125.17799500000001,
        125.42036899999948,
        125.32376400000066,
        124.99376099999972,
        126.40213099999892,
        123.74579300000005,
        124.68977900000027,
        123.96459200000027,
        123.67313600000125,
        124.6331140000002,
        123.9873549999993,
        123.99318800000037,
        125.3320220000005,
        124.13289799999984,
        125.83040600000095,
        124.2785530000001,
        124.68143200000122,
        123.35447999999997,
        124.34609399999863,
        125.17456399999901,
        123.03911700000026,
        122.71516599999995,
        123.42680699999983,
        123.1943599999995,
        123.48469000000114,
        124.28185900000062,
        123.17232999999942
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 61
    },
    {
      "endpoint": "POST /api/audit/start",
      "method": "POST",
      "path": "/api/audit/start",
      "samples": [
        124.32865999999922,
        124.08305800000016,
        124.321688,
        124.7056479999992,
        122.6795230000007,
        123.94016499999998,
        124.06675399999949,
        123.93448499999977,
        124.38660100000016,
        123.71896699999888,
        123.62698099999943,
        123.76804300000003,
        123.51361800000086,
        126.02938100000028,
        126.54633300000205,
        123.93107000000236,
        124.14365200000248,
        125.04622699999891,
        124.80100600000151,
        123.86166899999807,
        124.3145190000032,
        123.58373500000016,
        124.96736000000237,
        124.46943000000101,
        123.90684300000066,
        123.15768500000195,
        123.54973799999789,
        125.25728700000036,
        122.89524900000106,
        123.09787499999948
      ],
      "ttfb": [
        124.19252499999857,
        123.94788499999959,
        124.19688300000053,
        124.57302299999901,
        122.56936200000018,
        123.82410900000104,
        123.95727799999986,
        123.80276000000049,
        124.25177000000076,
        123.61007599999903,
        123.45751000000018,
        123.63348500000029,
        123.4015900000013,
        125.85607000000164,
        126.40914200000043,
        123.82449800000177,
        124.03275399999984,
        124.90694299999814,
        124.6783650000034,
        123.68154399999912,
        124.20038200000272,
        123.40691199999856,
        124.79973800000153,
        124.33563499999946,
        123.77243599999929,
        123.02615600000354,
        123.43786700000055,
        125.1255999999994,
        122.7625420000004,
        122.95784899999853
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 89
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "method": "POST",
      "path": "/api/audit/capture-email",
      "samples": [
        124.32218899999862,
        124.4642789999998,
        124.07074199999988,
        123.94585400000142,
        124.69353899999987,
        124.92436799999996,
        123.69446999999855,
        124.2820380000012,
        124.85851800000091,
        123.9122239999997,
        123.85265600000275,
        124.44154300000082,
        125.51068300000043,
        124.47871400000076,
        123.02598299999954,
        124.246317000001,
        124.66596800000116,
        123.50216300000102,
        123.79574500000308,
        129.57521500000075,
        126.30392299999949,
        125.46384699999908,
        124.49613800000225,
        123.23429000000033,
        124.03228099999978,
        124.04207999999926,
        128.86148400000093,
        123.83442899999864,
        123.98307199999908,
        124.16300200000114
      ],
      "ttfb": [
        124.17695699999967,
        124.32294600000023,
        123.92465400000219,
        123.82213000000047,
        124.5692029999991,
        124.7992520000007,
        123.55444400000124,
        124.14173200000005,
        124.68873600000006,
        123.7620489999972,
        123.72416100000191,
        124.30052799999976,
        125.25155399999858,
        124.2920520000007,
        122.91077299999961,
        124.11596400000053,
        124.521684000003,
        123.33470999999918,
        123.68236400000023,
        129.44529700000203,
        126.17092600000251,
        125.3493329999983,
        124.31016100000124,
        123.1130770000018,
        123.89197200000126,
        123.91021799999726,
        128.69753500000297,
        123.67118000000119,
        123.84268399999928,
        124.03228500000114
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 34
    },
    {
      "endpoint": "POST /api/call/book",
      "method": "POST",
      "path": "/api/call/book",
      "samples": [
        124.0505570000023,
        124.49377800000002,
        123.74158100000204,
        124.14399599999888,
        123.99753399999827,
        124.04710499999783,
        124.36212100000193,
        122.67488199999934,
        124.39738299999954,
        123.2149759999993,
        123.86120499999743,
        123.51421499999924,
        123.57537199999933,
        125.39834200000041,
        123.68722699999853,
        123.50024299999859,
        126.40263799999957,
        124.04190899999958,
        123.78899799999999,
        124.1597870000005,
        124.81745500000034,
        124.0564549999981,
        123.26026799999818,
        125.31518099999812,
        124.29404900000009,
        123.9254510000028,
        124.16695999999865,
        123.70214000000124,
        123.9533420000007,
        122.90921099999832
      ],
      "ttfb": [
        123.92010500000106,
        124.36344399999871,
        123.61550400000124,
        124.02839599999788,
        123.84090300000025,
        123.85756499999843,
        124.22912300000098,
        122.54049200000009,
        124.26682300000175,
        123.0904780000019,
        123.72088099999746,
        123.40509100000054,
        123.40860600000087,
        125.26072900000145,
        123.57745000000068,
        123.36462699999902,
        126.26079299999765,
        123.93172500000219,
        123.63282900000195,
        124.02620799999931,
        124.70496500000081,
        123.9298060000001,
        123.15454099999988,
        125.19791299999997,
        124.19828499999858,
        123.80027900000277,
        124.03803400000106,
        123.60613599999851,
        123.82631000000038,
        122.77334399999745
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 99
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "method": "POST",
      "path": "/api/reports/{reportId}/retry-platform/{platform}",
      "samples": [
        123.42075699999987,
        123.89796400000341,
        123.38233399999808,
        124.05779500000062,
        121.958122,
        123.87856800000009,
        122.87876800000231,
        123.55203099999926,
        123.14330300000074,
        123.16865700000199,
        122.79633099999774,
        123.29337700000178,
        122.93003500000123,
        123.55972100000145,
        123.19751499999984,
        123.64670800000022,
        123.02812300000005,
        123.50702900000033,
        123.1621460000024,
        123.18521600000167,
        122.93725600000107,
        123.49734099999841,
        123.43444199999794,
        123.46889600000213,
        123.49919699999737,
        124.16183599999931,
        123.5048569999999,
        123.58031100000153,
        124.33521199999814,
        122.74806600000011
      ],
      "ttfb": [
        123.2893980000008,
        123.729000000003,
        123.24440699999832,
        123.93235999999888,
        121.83850399999938,
        123.7497549999971,
        122.77527900000132,
        123.3704030000008,
        123.02184699999998,
        123.04832800000077,
        122.64682999999786,
        123.17018600000301,
        122.80467600000338,
        123.42953100000159,
        123.06515600000057,
        123.46949600000153,
        122.85016299999916,
        123.36779000000024,
        123.03156900000249,
        123.05593399999998,
        122.72751599999901,
        123.36894300000131,
        123.29834199999823,
        123.34346000000005,
        123.2471009999972,
        124.0565319999987,
        123.31579499999862,
        123.41734200000064,
        124.16611299999931,
        122.6317280000003
      ],
      "status": 200,
      "expectedStatus": 200,
      "bytes": 55
    }
  ],
  "audits": [
    {
      "endpoint": "GET /healthz",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9016357578444092,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.630370248707211,
      "weight": 1,
      "advice": "GET /healthz: reduce p95 time to first byte (125ms) toward 50ms."
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /healthz",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /healthz",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /healthz: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /healthz",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9064512340001537,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6348162073738604,
      "weight": 1,
      "advice": "GET /api/admin/leads: reduce p95 time to first byte (124ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "error-envelope",
      "category": "contract",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/admin/leads: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/admin/leads",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.900289712399748,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.629183437122942,
      "weight": 1,
      "advice": "GET /api/call/availability: reduce p95 time to first byte (126ms) toward 50ms."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "cache-headers",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "payload-size",
      "category": "efficiency",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "GET /api/call/availability: add Strict-Transport-Security."
    },
    {
      "endpoint": "GET /api/call/availability",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.900727128730191,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.62956325724329,
      "weight": 1,
      "advice": "POST /api/audit/start: reduce p95 time to first byte (126ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/start: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/start",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.8937731174712148,
      "weight": 3,
      "advice": "POST /api/audit/capture-email: reduce p95 latency (128ms) toward 100ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6230972160171973,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: reduce p95 time to first byte (128ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/audit/capture-email: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/audit/capture-email",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.901837830881953,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.630509782223903,
      "weight": 1,
      "advice": "POST /api/call/book: reduce p95 time to first byte (125ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/call/book: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/call/book",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "latency-p95",
      "category": "performance",
      "score": 0.9061756669742195,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "ttfb-p95",
      "category": "performance",
      "score": 0.6344877425183382,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: reduce p95 time to first byte (124ms) toward 50ms."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-error-rate",
      "category": "reliability",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "burst-degradation",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "rate-limit-grace",
      "category": "reliability",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "compression",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "cache-headers",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "payload-size",
      "category": "efficiency",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "openapi-valid",
      "category": "contract",
      "score": null,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "expected-status",
      "category": "contract",
      "score": 1,
      "weight": 3
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-stack-traces",
      "category": "contract",
      "score": 1,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "error-envelope",
      "category": "contract",
      "score": null,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "https",
      "category": "security",
      "score": 1,
      "weight": 1
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "auth-required",
      "category": "security",
      "score": null,
      "weight": 2
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "security-headers",
      "category": "security",
      "score": 0.5,
      "weight": 1,
      "advice": "POST /api/reports/{reportId}/retry-platform/{platform}: add Strict-Transport-Security."
    },
    {
      "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
      "id": "no-powered-by",
      "category": "security",
      "score": 1,
      "weight": 0.5
    }
  ],
  "scores": {
    "overall": 90.01522219122198,
    "categories": {
      "performance": 83.3739258432586,
      "reliability": null,
      "efficiency": 100,
      "contract": 100,
      "security": 80,
      "seo": null,
      "accessibility": null
    },
    "endpoints": [
      {
        "endpoint": "GET /healthz",
        "p50": 123.8261399999999,
        "p95": 125.41926235000003,
        "p99": 125.69949135000014,
        "errorRate": 0,
        "bytes": 15,
        "score": 91.37242609066992
      },
      {
        "endpoint": "GET /api/admin/leads",
        "p50": 123.21835550000014,
        "p95": 124.03628950000083,
        "p99": 124.58025772000039,
        "errorRate": 0,
        "bytes": 24,
        "score": 92.09772351292635
      },
      {
        "endpoint": "GET /api/call/availability",
        "p50": 124.36650400000053,
        "p95": 125.80858785000001,
        "p99": 126.37660618000005,
        "errorRate": 0,
        "bytes": 61,
        "score": 91.33372277275694
      },
      {
        "endpoint": "POST /api/audit/start",
        "p50": 124.00345949999974,
        "p95": 125.68193870000032,
        "p99": 126.39641692000154,
        "errorRate": 0,
        "bytes": 89,
        "score": 89.8412577689901
      },
      {
        "endpoint": "POST /api/audit/capture-email",
        "p50": 124.2641775000011,
        "p95": 127.71058155000027,
        "p99": 129.3682330100008,
        "errorRate": 0,
        "bytes": 34,
        "score": 89.60362233418124
      },
      {
        "endpoint": "POST /api/call/book",
        "p50": 124.01972149999892,
        "p95": 125.36091954999938,
        "p99": 126.11139215999981,
        "errorRate": 0,
        "bytes": 99,
        "score": 89.87846325973706
      },
      {
        "endpoint": "POST /api/reports/{reportId}/retry-platform/{platform}",
        "p50": 123.4275994999989,
        "p95": 124.1150175499999,
        "p99": 124.28493295999847,
        "errorRate": 0,
        "bytes": 55,
        "score": 90.0262151603565
      }
    ]
  }
}
