{"uid":"cap_HrUOqp_d-a_z2wx-ePyUN","slug":"netintel-tls-certificate-security-inspector-6df1301a","name":"netintel TLS Certificate & Security Inspector","description":"Paid-per-call network intelligence API: DNS with DNSSEC, email deliverability, TLS certificate inspection, IP/ASN lookup and DNS propagation. From $0.002 a call over x402. No account, no API key.","url":"https://netintel.x.c00l.site/tls","method":"POST","headers":{},"bodySchema":null,"responseSchema":{"type":"json","example":{"grade":"A","handshake":{"alpn":"h2","cipherSuite":"ECDHE-ECDSA-AES128-GCM-SHA256","negotiatedVersion":"TLSv1.2"},"certificate":{"issuer":{"commonName":"Sectigo ECC DV"},"subject":{"commonName":"github.com"},"validity":{"expired":false,"notAfter":"2026-02-05T23:59:59.000Z","daysUntilExpiry":189},"publicKey":{"curve":"P-256","algorithm":"EC"},"serialNumber":"72010E03F4A067FE4E796266430718F6","subjectAltNames":["github.com","www.github.com"],"signatureAlgorithm":{"name":"ecdsa-with-SHA256"}},"securityHeaders":{"grade":"A","score":88,"reasons":[{"header":"…","points":-5,"reason":"…"}]}}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.004","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"registry","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.004/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.004","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.004","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_nKp73giDiGYnyQKpv5idp","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.004","costPer":"request","priority":0,"asset":null,"unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Inspects a domain's TLS certificate, handshake details, and HTTP security headers, returning a graded security report with certificate validity, cipher suite, and expiry information.","exampleAgentPrompt":"Can you inspect the TLS certificate and security headers for github.com — I want to see the grade, cipher suite, TLS version, certificate expiry, and who issued the cert?","exampleUseCases":[{"title":"Pre-deployment security audit","prompt":"Before we go live, check the TLS certificate and security headers for app.mycompany.com — I need the overall grade, cipher suite, TLS version, days until expiry, and a list of any header issues."},{"title":"Certificate expiry monitoring alert","prompt":"Check how many days are left before the TLS certificate on payments.acmecorp.com expires, and tell me who issued it and whether it's already expired."},{"title":"Third-party vendor security review","prompt":"I need to audit the TLS setup for api.supplierxyz.com — can you pull the certificate details including the issuer, public key algorithm, subject alt names, and give me the security headers grade?"}],"resultDescription":"Returns a JSON object with: an overall TLS grade (e.g. 'A'), handshake details (ALPN protocol, cipher suite, negotiated TLS version), certificate details (issuer, subject, serial number, validity window, days until expiry, expiry flag, public key algorithm and curve, subject alt names, signature algorithm), and security headers assessment (grade, numeric score, per-header penalty reasons).","failureModes":["Domain does not exist or is unreachable — connection timeout or DNS failure","Domain has no TLS listener on port 443 — handshake failure","Self-signed or untrusted certificate — may return low grade with error details","Payment not included or insufficient — x402 payment required response","Malformed hostname input — validation error"],"whenToPreferThis":"Choose this endpoint when you need a combined TLS certificate inspection plus HTTP security headers grade in a single call, without setting up an account or API key. It is ideal for one-off audits, automated security monitoring pipelines, or vendor due-diligence checks where you want raw certificate metadata (issuer, expiry, SANs, cipher suite) alongside a scored security headers report. Prefer it over browser-based tools or paid observatory services when you need programmatic, pay-per-call access with no subscription overhead.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T00:34:55.439Z","isFirstParty":false}