{"uid":"cap_ESMb6g6DkKAbAqK9IKtAN","slug":"certificate-sans-bulk-lookup-6624d396","name":"Certificate SANs Bulk Lookup","description":"Bulk certificate sans: up to 20 domains in one call, processed concurrently, results returned in input order with a per-item error field and a count of failures. Same answer per item as the single /monitor/cert-chain-sans endpoint (Subject Alternative Names of the newest certificate for a domain from certificate-transparency logs). Batch enrichment for agents that hold a list. $0.01 per batch.","url":"https://intel.rallylive.ca/bulk/monitor/cert-chain-sans","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","properties":{}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.1","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.1/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_NkRU5O0KHBF0Jls8Bssbf","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.1","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Fetches Subject Alternative Names (SANs) from the newest TLS certificate for up to 20 domains concurrently in a single call, using certificate transparency logs.","exampleAgentPrompt":"Look up the Subject Alternative Names from the latest TLS certificates for these domains using certificate transparency logs: example.com, acme.org, testsite.io — I need all the SANs per domain and want to know if any lookups failed.","exampleUseCases":[{"title":"Subdomain enumeration for security audit","prompt":"I have a list of 15 client domains and I need to enumerate all the subdomains covered by their TLS certificates using certificate transparency logs — can you pull the SANs for all of them at once: client1.com, client2.com, client3.com, client4.com, client5.com, client6.com, client7.com, client8.com, client9.com, client10.com, client11.com, client12.com, client13.com, client14.com, client15.com?"},{"title":"Attack surface mapping for pentest prep","prompt":"Before our pentest kickoff, I need to map the certificate SANs for these target domains from cert transparency logs — batch lookup these 10 domains: targetcorp.com, shop.targetcorp.com, api.targetcorp.com, dev.targetcorp.com, staging.targetcorp.com, mail.targetcorp.com, vpn.targetcorp.com, docs.targetcorp.com, admin.targetcorp.com, portal.targetcorp.com."},{"title":"Competitor domain coverage intelligence","prompt":"I want to see what subdomains and services our competitors are exposing via their TLS certificates — pull the SANs from certificate transparency logs for these domains: competitor1.com, competitor2.com, competitor3.com, competitor4.com, competitor5.com."}],"resultDescription":"Returns an ordered array matching the input domain list, where each item contains the Subject Alternative Names extracted from the newest TLS certificate found in certificate transparency logs for that domain, plus a per-item error field if the lookup failed. A top-level failure count is also included.","failureModes":["Domain not found in certificate transparency logs — per-item error field populated","Invalid or malformed domain name — per-item error returned","More than 20 domains submitted — request rejected","Network timeout reaching certificate transparency log sources","All items fail — full failure count returned with empty SAN lists"],"whenToPreferThis":"Use this endpoint when you have a list of 2–20 domains and need their TLS certificate SANs in a single efficient call rather than making sequential single-domain requests. It is ideal for security audits, attack surface mapping, subdomain enumeration, and bulk domain intelligence pipelines where concurrency and ordered results with per-item error handling matter.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T06:51:14.446Z","isFirstParty":false}