# TLS Certificate 60-Day Expiry Check

> TLS Certificate 60-Day Expiry Check is a paid API for AI agents from agentshelf.syntexa.ch, paid per call via x402, $0.007/call, status unknown (last checked 2026-09-29).

Checks whether a host's port-443 TLS certificate will remain valid for at least 60 days and returns an ok_check boolean result

## Facts

- Endpoint: POST https://agentshelf.syntexa.ch/v1/tls-expiry-60?utm_source=zero.xyz
- Price: $0.007/call
- Payment: x402
- Status: unknown
- Last checked: 2026-09-29
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/tls-certificate-60-day-expiry-check-358c25f0
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_gahtS9FkMTza5SGE1U4Sw

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability tls-certificate-60-day-expiry-check-358c25f0 -d '<json body>'
```

Example prompt: Can you check whether api.example.com's TLS certificate on port 443 will still be valid for at least 60 more days?

## When to prefer this

Use this endpoint when you need a lightweight, definitive yes/no answer about whether a specific host's TLS certificate clears a 60-day validity window. Prefer this over manual certificate inspection tools when automating release pipelines, running scheduled monitoring jobs, or making programmatic decisions based on certificate health. This is a specialized check — use it rather than generic TLS inspection when the 60-day threshold is exactly what you need to validate.

## Known failure modes

- Host unreachable or DNS resolution failure — check returns error or false
- Certificate already expired — ok_check is false
- Host does not serve TLS on port 443 — connection error
- Invalid or malformed hostname/URL input — request rejected
- Network timeout reaching target host — indeterminate result

## How this service works

Call when an agent needs whether the port-443 certificate stays valid for at least 60 days. The threshold changes the ok_check bit. Exact $0.007 USDC. Prefer unpaid POST /v1/sandbox/tls-expiry-60 first.

## Output

Returns an ok_check boolean indicating whether the TLS certificate on port 443 of the given host is valid for at least 60 more days. A true value means the certificate passes the 60-day threshold; false means it is expiring within 60 days or is otherwise invalid.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "properties": {
  "url": {
   "type": "string",
   "maxLength": 2048,
   "minLength": 8,
   "description": "Public URL whose hostname is inspected. Provide url or host. Private targets are rejected."
  },
  "host": {
   "type": "string",
   "examples": [
    "example.com"
   ],
   "maxLength": 253,
   "minLength": 1,
   "description": "Public hostname such as example.com. The port and check are fixed by the SKU. Provide host or url."
  }
 }
}
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/tls-certificate-60-day-expiry-check-358c25f0/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from agentshelf.syntexa.ch](https://www.zero.xyz/host/agentshelf.syntexa.ch/llms.txt)
