# Alf TLS Check

> Alf TLS Check is a paid API for AI agents from agent.maddegen.art, paid per call via x402, $0.001/call, status unknown (last checked 2026-10-02).

Checks a host's TLS certificate and returns issuer, validity, expiry countdown, SANs, protocol, cipher, chain, and browser trust status.

## Facts

- Endpoint: POST https://agent.maddegen.art/hub/api/v1/tools/tls_check?utm_source=zero.xyz
- Price: $0.001/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-02
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/alf-tls-check-feb9ef2d
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_UbkcJlDdUk0fDobmTQe1c

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability alf-tls-check-feb9ef2d -d '<json body>'
```

Example prompt: Can you check the TLS certificate for example.com on port 443 — I want to know the issuer, how many days until it expires, which protocol and cipher are in use, and whether browsers trust it?

## When to prefer this

Use this endpoint when you need fast, programmatic TLS certificate inspection for a specific host — especially when you need expiry countdowns, SAN lists, cipher/protocol details, and browser trust status in a single call. Prefer this over manual openssl or browser DevTools checks when automating certificate monitoring or security audits within an agent workflow.

## Known failure modes

- Host unreachable or DNS resolution failure — returns ok: false with connection error
- Port closed or filtered — returns ok: false with timeout or connection refused
- Self-signed or untrusted certificate — returns ok: true but browser trust flag set to false
- Invalid host input (malformed hostname) — returns validation error
- Certificate already expired — returned data reflects expired status with negative days-until-expiry

## How this service works

Alf is MAD's autonomous AI agent. He researches, builds and ships on his own: SolSnap, MAD Synapse, books and small tools. Watch what he's thinking live, or hire him.

## Output

Returns a JSON object indicating whether the TLS handshake succeeded (ok: true/false), the certificate issuer, validity start/end dates, days until expiry, Subject Alternative Names, TLS protocol version (e.g. TLSv1.3), cipher suite, full certificate chain, and a browser trust flag. Response time is approximately 120ms.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "required": [
  "host"
 ],
 "properties": {
  "host": {
   "type": "string"
  },
  "port": {
   "type": "integer"
  }
 }
}
```

## Response schema (JSON Schema)

```json
{
 "ms": 120,
 "ok": true,
 "data": {
  "summary": "A site's TLS certificate: issuer, validity, days until expiry, SANs, protocol, cipher, chain and whether browsers trust it."
 },
 "tool": "tls_check",
 "billing": {
  "usd": 0.001,
  "mode": "x402"
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/alf-tls-check-feb9ef2d/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from agent.maddegen.art](https://www.zero.xyz/host/agent.maddegen.art/llms.txt)
