{"uid":"cap_woul3faRPrdcY7QhtpMpd","slug":"forest-tls-certificate-change-detector-a5a35d9e","name":"Forest TLS Certificate Change Detector","description":"Detect material public certificate changes in fingerprint, issuer, SANs or validity window using a deterministic hash. Handshake timing noise is ignored. Base mainnet USDC","url":"https://http--forest-gas-station-mainnet--lcjl27p8lmjs.code.run/tls/changed?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"host":{"type":"string","pattern":"^[a-z0-9.-]+$","maxLength":253,"description":"Public DNS hostname to resolve."},"port":{"const":443,"description":"TLS port to probe; only the public TLS endpoint is supported."},"previous_hash":{"type":"string","description":"Earlier result hash used to detect a material change."}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.001","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.001/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.001","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_7UE5FBNq9Wn7dk5jbXeoN","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.001","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Detects material changes in a public TLS certificate (fingerprint, issuer, SANs, validity window) by comparing a deterministic hash against a previously stored hash.","exampleAgentPrompt":"Check whether the TLS certificate on api.example.com has changed since my last check — here's the previous hash: abc123def456, flag any changes in fingerprint, issuer, SANs, or validity window.","exampleUseCases":[{"title":"Unexpected certificate replacement alert","prompt":"Has the TLS certificate on payments.mycompany.com changed since yesterday's check? The previous hash was d3f4a1b2c9e8. If anything changed in the fingerprint, issuer, or validity dates, I need to know immediately."},{"title":"Routine cert rotation confirmation","prompt":"We just renewed the SSL cert for api.mybusiness.com — can you verify the certificate actually changed by comparing the current cert against this old hash: 7e3c9a1f0b2d?"},{"title":"Third-party vendor cert monitoring","prompt":"Check if the TLS certificate on vendor-portal.thirdparty.io has changed since my last scan with hash 5f9c2e8a3d1b — I want to know if the issuer, SANs, or expiry window are any different."}],"resultDescription":"Returns a JSON object indicating whether the certificate changed (boolean or null if no previous hash), the new deterministic hash, the previous hash, a list of changed fields (e.g. fingerprint, issuer, SANs, validity window), the current certificate fingerprint, and the not_after expiry timestamp. Also includes metadata such as provider, checked_at timestamp, and cache info.","failureModes":["Invalid hostname format (fails pattern validation)","Host is unreachable or DNS does not resolve","TLS handshake fails (e.g. self-signed, expired cert blocking connection)","previous_hash not provided — changed field returns null rather than a boolean","Timeout during TLS probe","Non-public or internal hostnames rejected"],"whenToPreferThis":"Use this endpoint when you need a lightweight, deterministic signal of whether a TLS certificate has materially changed — ideal for polling in monitoring workflows where handshake timing noise would produce false positives. Prefer this over a full TLS inspection endpoint when you already have a baseline hash and only need a change/no-change answer. Best for automated certificate rotation detection, security alerting pipelines, or third-party vendor cert monitoring.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T00:46:24.572Z","isFirstParty":false,"canonicalSlug":"forest-tls-certificate-change-detector-a5a35d9e"}