{"uid":"cap_awLY8goAndnO9zVBDMwnK","slug":"agentaegis-ssl-tls-audit-ca885524","name":"AgentAegis SSL/TLS Audit","description":"AgentAegis ssl_tls_audit — TLS/certificate health grade for a host: supported protocols, cipher strength, certificate validity + days-to-expiry, and known TLS vulnerabilities.","url":"https://agentaegis-mcp-production.up.railway.app/x402/ssl-tls-audit","method":"POST","headers":{},"bodySchema":null,"responseSchema":null,"example":{"request":{"hostname":"google.com"},"response":{"hsts":{"enabled":false},"port":443,"grade":{"grade":"B","score":75,"issues":["TLS 1.0 enabled (deprecated)","TLS 1.1 enabled (deprecated)"]},"hostname":"google.com","certificate":{"san":[],"issuer":"CN=WR2,O=Google Trust Services,C=US","subject":"CN=*.google.com","key_size":256,"valid_to":"2026-08-31T08:36:03Z","valid_from":"2026-06-08T08:36:04Z","chain_valid":true,"days_until_expiry":61,"signature_algorithm":{"name":"sha256WithRSAEncryption","dotted_string":"1.2.840.113549.1.1.11"}},"cipher_suites":{"weak_count":3,"strong_count":15,"weak_ciphers":["TLS_RSA_WITH_3DES_EDE_CBC_SHA","TLS_RSA_WITH_3DES_EDE_CBC_SHA","TLS_RSA_WITH_3DES_EDE_CBC_SHA"],"acceptable_count":6},"ocsp_stapling":false,"recommendations":["Disable TLS 1.0 — deprecated since 2020","Disable TLS 1.1 — deprecated since 2020","Enable HTTP Strict Transport Security (HSTS)","Enable OCSP stapling for faster certificate validation","Remove 3 weak cipher suites"],"vulnerabilities":{"beast":true,"crime":false,"robot":false,"poodle":false,"heartbleed":false},"protocol_support":{"ssl_3_0":false,"tls_1_0":true,"tls_1_1":true,"tls_1_2":true,"tls_1_3":true}}},"exampleRequest":{"hostname":"google.com"},"tags":["x402"],"displayCostAmount":"1","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$1/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"1","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"1","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm__InaoxfotIsjUvXSXZ4qv","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"1","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Grades the TLS/certificate health of a hostname, returning supported protocols, cipher strength, certificate validity, days-to-expiry, and known TLS vulnerabilities.","exampleAgentPrompt":"Can you run a full TLS/SSL audit on stripe.com and tell me the grade, whether the certificate is still valid, how many days until it expires, and if there are any known TLS vulnerabilities?","exampleUseCases":[{"title":"Pre-deployment HTTPS configuration check","prompt":"Before we go live tomorrow, can you audit the TLS setup on staging.myapp.com and let me know the overall grade, which protocols it supports, and whether there are any weak ciphers or known vulnerabilities we should fix first?"},{"title":"Expiring certificate early warning","prompt":"I want to make sure none of our customer-facing domains are about to have their SSL certificates expire — can you check api.ourplatform.com and tell me how many days are left on the cert and whether it's still valid?"},{"title":"Vendor security posture assessment","prompt":"We're about to sign a contract with a new payment processor — can you run a TLS audit on their main site paymentvendor.com and give me their security grade, supported protocols, and whether they have any known SSL vulnerabilities like POODLE or BEAST?"}],"resultDescription":"Returns a TLS health grade (e.g. A+) with a numeric score, along with details on supported protocols, cipher strength, certificate validity, days to expiry, and any known TLS vulnerabilities for the audited hostname.","failureModes":["Hostname unreachable or does not support HTTPS — connection error returned","Invalid or malformed hostname input — validation error","Host exists but TLS handshake fails entirely — partial result or error","Payment not included or invalid — 402 Payment Required","Rate limiting or upstream timeout — 429 or 504 response"],"whenToPreferThis":"Use this endpoint when you need a comprehensive TLS/SSL security grade for a specific hostname, including certificate expiry, protocol support, cipher analysis, and vulnerability detection — especially when you want a single structured score rather than raw certificate data alone.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:39:12.371Z","isFirstParty":false}