{"uid":"cap_-cugJR630iy_WVjSletRh","slug":"tls-hostname-certificate-validator-366c259e","name":"TLS Hostname Certificate Validator","description":"Call when an agent needs whether the port-443 certificate SAN or CN matches the requested host. Exact $0.01 USDC. Prefer unpaid POST /v1/sandbox/tls-hostname first.","url":"https://agentshelf.syntexa.ch/v1/tls-hostname?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"url":{"type":"string","maxLength":2048,"minLength":8,"description":"Public URL whose hostname is inspected. Provide url or host. Private targets are rejected."},"host":{"type":"string","examples":["example.com"],"maxLength":253,"minLength":1,"description":"Public hostname such as example.com. The port and check are fixed by the SKU. Provide host or url."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.01","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.01/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.01","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_LPIeAfk-LKpJlk9bNnLYD","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.01","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Checks whether the TLS certificate SAN or CN for a given URL's port-443 connection matches the requested hostname","exampleAgentPrompt":"Can you check whether the TLS certificate on https://api.example.com actually covers the hostname api.example.com — specifically whether the SAN or CN in the port-443 cert matches?","exampleUseCases":[{"title":"Pre-deployment TLS config check","prompt":"Before I go live, can you verify that the TLS certificate at https://checkout.mystore.com matches the hostname checkout.mystore.com — I want to make sure the SAN or CN is correctly set up?"},{"title":"Third-party integration security audit","prompt":"I'm integrating with a partner API at https://partner-api.vendorcorp.io — can you confirm that their port-443 certificate's SAN or CN actually matches the host partner-api.vendorcorp.io before I start sending data?"},{"title":"Monitoring misconfigured certs","prompt":"We've been getting SSL errors from users hitting https://portal.internaltools.net — can you check if the TLS certificate SAN or CN on that URL correctly matches the hostname portal.internaltools.net?"}],"resultDescription":"Returns whether the port-443 TLS certificate's Subject Alternative Name (SAN) or Common Name (CN) matches the requested hostname, indicating a valid or mismatched certificate configuration for that host.","failureModes":["Host unreachable or connection refused on port 443 — returns error indicating no TLS handshake possible","Invalid URL format — returns validation error","Certificate expired or untrusted CA — may still report SAN/CN match status but flag other issues","Hostname mismatch detected — returns mismatch result","Timeout during TLS handshake — returns error"],"whenToPreferThis":"Use this endpoint when you need to programmatically verify that a server's TLS certificate correctly covers a given hostname via SAN or CN — particularly useful in security audits, pre-deployment checks, or monitoring pipelines. Prefer the free sandbox alternative (POST /v1/sandbox/tls-hostname) for testing; use this paid endpoint for production or when the sandbox is unavailable.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T02:20:22.521Z","isFirstParty":false,"canonicalSlug":"tls-hostname-certificate-validator-366c259e"}