81trust / 100

Cert Transparency Lookup

by NetIntel in Developer tools

x402 APIPassing, checked 3 h ago

Query the crt.sh certificate transparency log database to enumerate all SSL certificates ever issued for a domain — returns subdomains discovered, certificate issuers, validity periods, and a risk score flagging wildcard certs, expiring certs, and suspicious issuance patterns.

GET https://netintel.dev/cert-transparency/lookup

Last 30 days

All checks passedSome failedAll failedNot checked
Uptime
100%
Response time
178 ms typical, 178 ms slowest 5%
Last check
3 h ago
Next check
any minute now

How to call it

# See the payment challenge (nothing is charged)
curl -i -X GET "https://netintel.dev/cert-transparency/lookup?domain=example.com&include_subdomains=true&limit=100"
import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { ExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";

const client = new x402Client().register(
  "eip155:8453",
  new ExactEvmScheme(privateKeyToAccount(process.env.AGENT_KEY)),
);
const pay = wrapFetchWithPayment(fetch, client);

// Not sure it's safe to pay? Preflight it first for $0.005:
// GET https://toolvet.app/api/v1/check?url=https%3A%2F%2Fnetintel.dev%2Fcert-transparency%2Flookup
const res = await pay("https://netintel.dev/cert-transparency/lookup?domain=example.com&include_subdomains=true&limit=100");
console.log(await res.json());

Example input

{
  "domain": "example.com",
  "include_subdomains": true,
  "limit": 100
}

Example output

{
  "certs": [
    {
      "common_name": "example.com",
      "days_until_expiry": 90,
      "id": 12345678,
      "is_expired": false,
      "is_wildcard": false,
      "issuer": "Let's Encrypt",
      "not_after": "2024-04-01T00:00:00Z",
      "not_before": "2024-01-01T00:00:00Z",
      "sans": [
        "example.com",
        "www.example.com"
      ]
    }
  ],
  "domain": "example.com",
  "expiring_within_30_days": [],
  "findings": [],
  "grade": "A",
  "issuers": [
    "Let's Encrypt"
  ],
  "recently_issued": [],
  "score": 100,
  "total_certs_found": 47,
  "unique_subdomain_count": 2,
  "unique_subdomains": [
    "www.example.com",
    "mail.example.com"
  ],
  "wildcard_certs": []
}

Security scan

  • No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.

Recent checks

WhenResultHTTPTimePrice
3 h agoPassed402178 ms$0.01
8 h agoPassed402179 ms$0.01