{"uid":"cap_X-7hOMHfROJKSQ5ELgreC","slug":"agent402-tools-tls-certificate-inspector-dccfa1d5","name":"agent402.tools TLS Certificate Inspector","description":"Inspect the TLS certificate of any public host: subject, issuer, validity window, days remaining, SANs, and SHA-256 fingerprint.","url":"https://agent402.tools/api/tls-cert","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"host":{"type":"string","description":"Hostname (port 443)"}}},"responseSchema":{"type":"json","example":{"host":"example.com","issuer":"DigiCert","validTo":"2027-01-01T00:00:00.000Z","altNames":["example.com"],"daysRemaining":204}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.001","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.001/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_KibYtHI5QyShD2D21-qvc","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.001","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Fetches and returns the TLS certificate details of any public hostname, including subject, issuer, validity window, days remaining, SANs, and SHA-256 fingerprint.","exampleAgentPrompt":"What does the TLS certificate look like for api.stripe.com — I want to know the issuer, how many days it has left, its SANs, and the SHA-256 fingerprint.","exampleUseCases":null,"resultDescription":"Returns structured details about the host's TLS certificate: subject common name, issuer organization, validity start and expiry dates, days remaining until expiry, the list of Subject Alternative Names (SANs), and the SHA-256 fingerprint of the certificate.","failureModes":["Host not reachable or does not support TLS — returns connection error","Invalid or malformed hostname — returns validation error","Certificate chain is broken or self-signed in unexpected way — may return partial data or error","Port 443 not open on the specified host — returns timeout or connection refused","Host field missing from request body — returns 400 bad request"],"whenToPreferThis":"Use this endpoint when you need to programmatically inspect a live TLS certificate for any public HTTPS host — especially to check expiry dates, verify issuers, retrieve SANs for coverage validation, or obtain a SHA-256 fingerprint for certificate pinning or security audits. Prefer this over manual browser inspection or openssl CLI when automation or agent-driven workflows are needed.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-13T12:53:46.041Z","isFirstParty":false}