# AgentShelf TLS/HTTPS Certificate Checker

> AgentShelf TLS/HTTPS Certificate Checker is a paid API for AI agents from agentshelf.syntexa.ch, paid per call via x402, $0.006/call, status unknown (last checked 2026-10-02).

Retrieves and summarizes the TLS certificate for a given host or URL on TCP port 443, returning authorization and expiry status

## Facts

- Endpoint: POST https://agentshelf.syntexa.ch/v1/tls-https?utm_source=zero.xyz
- Price: $0.006/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-02
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/agentshelf-tls-https-certificate-checker-33567990
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_w--8MdWoiJt0X96Y91SF7

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability agentshelf-tls-https-certificate-checker-33567990 -d '<json body>'
```

Example prompt: Can you check if the TLS certificate for api.example.com is valid and not expired — I need to know if the HTTPS cert is authorized and current before we go live?

## When to prefer this

Use this endpoint when an agent needs a quick, structured pass/fail verdict on whether a host's TLS certificate is valid and authorized, especially in automated pre-deployment checks, security monitoring pipelines, or partner API health verification. Prefer the sandbox endpoint (/v1/sandbox/tls-https) for testing before paying $0.006 USDC per call.

## Known failure modes

- Host unreachable or no TLS listener on port 443 — connection timeout or refused error
- Invalid or malformed URL/hostname input — validation error returned
- Certificate exists but is self-signed or from an untrusted CA — ok_check false
- Certificate has expired — ok_check false
- DNS resolution failure for the provided hostname
- Payment failure via x402 protocol — 402 response with payment details

## How this service works

Call when an agent needs a certificate summary for TCP 443. ok_check is true when the cert is authorized and unexpired. Exact $0.006 USDC. Prefer unpaid POST /v1/sandbox/tls-https first.

## Output

Returns a certificate summary for the given host on TCP port 443, including an ok_check boolean that is true when the certificate is both authorized (trusted) and unexpired, along with supporting certificate metadata.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "url": {
   "type": "string",
   "maxLength": 2048,
   "minLength": 8,
   "description": "Public URL whose hostname is inspected. Provide url or host. Private targets are rejected."
  },
  "host": {
   "type": "string",
   "examples": [
    "example.com"
   ],
   "maxLength": 253,
   "minLength": 1,
   "description": "Public hostname such as example.com. The port and check are fixed by the SKU. Provide host or url."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/agentshelf-tls-https-certificate-checker-33567990/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from agentshelf.syntexa.ch](https://www.zero.xyz/host/agentshelf.syntexa.ch/llms.txt)
