TLS certificate

$0.001 per call · USDC via x402 · POST /api/tls-cert

Inspect the TLS certificate of any public host: subject, issuer, validity window, days remaining, SANs, and SHA-256 fingerprint. Send POST /api/tls-cert with the required field host and pay $0.001 per call over x402 or MPP (there is no free tier). It returns a JSON object with host, issuer, validTo, daysRemaining and altNames.

Category: Network & domains · Tags: tls ssl certificate expiry security · Also found as: tls-certificate ssl-certificate

TRY IN PLAYGROUND →

Parameters

NameTypeRequiredDescription
hoststringyesHostname (port 443) Also accepted as hostname, domain, site, server.

Example request

curl -i -X POST https://agent402.tools/api/tls-cert \
  -H "Content-Type: application/json" \
  -d '{"host":"example.com"}'

Without payment this returns HTTP 402 Payment Required with the exact price for tls-cert; any x402 v2 or MPP client pays it and retries.

Example response

{
  "host": "example.com",
  "issuer": "DigiCert",
  "validTo": "2027-01-01T00:00:00.000Z",
  "daysRemaining": 204,
  "altNames": [
    "example.com"
  ]
}
FieldTypeAlways presentIn the example
hoststringyesexample.com
issuerstringyesDigiCert
validTostringyes2027-01-01T00:00:00.000Z
daysRemainingnumberyes204
altNamesarray of stringyes1 item in the example

From an MCP client

catalog.call {
  "slug": "tls-cert",
  "params": {
    "host": "example.com"
  }
}

The hosted connector at https://agent402.tools/mcp needs a payment for tls-cert; the stdio package pays it from a wallet or from AGENT402_CREDITS_KEY. Local install: npx -y agent402-mcp.

Errors and behavior

Paid call (JavaScript agent)

import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { registerExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";

const client = new x402Client();
client.setSpendControls?.(false); // keep your own spending ceiling in code
registerExactEvmScheme(client, { signer: privateKeyToAccount(KEY) });
const payFetch = wrapFetchWithPayment(fetch, client);

const res = await payFetch("https://agent402.tools/api/tls-cert", {
  method: "POST",
  headers: { "Content-Type": "application/json" },
  body: JSON.stringify({
    "host": "example.com"
  }),
});

Part of these workflows

TLS certificate is one step in these 8 skill packs, each sold as a single call:

Related tools

Certificate transparency search

$0.005 · POST /api/cert-transparency

Search public Certificate Transparency logs for every cert issued to a domain. Two independent public CT search services…

ASN + IP geolocation

$0.001 · POST /api/asn-info

Look up the Autonomous System (ASN), prefix, country, registry, and allocation date for an IPv4 address - or for a hostn…

HTTP headers + security analysis

$0.003 · POST /api/http-headers

Fetch a URL and return every response header plus a security analysis: HSTS, CSP, X-Frame-Options, X-Content-Type-Option…

Tech stack detection

$0.005 · POST /api/tech-stack

Detect the technology stack of a public website: CDN, web server, language/runtime, frontend framework (Next.js, Nuxt, S…

Domain security & deliverability audit (graded)

$0.60 · POST /v1/domain-audit

Hand over a domain and get one graded security & email-deliverability audit: SPF, DMARC, DKIM and MX (why your mail land…

Domain security audit - PRO (attack surface + stack)

$0.85 · POST /v1/domain-audit/pro

The deeper tier: everything in the standard audit plus the attack surface from Certificate Transparency logs (subdomains…