mcpserver.lol
registry/tlsradar
Connection check verified live · 28h ago

tlsradar

SSL/TLS scanning, free Let's Encrypt issuance, and certificate-expiry monitoring.

Tools 17
GitHub stars
Installs / wk
Licence
Transport streamable-http
Last checked 28h ago

Tools & capabilities

17 tools

Read from the running server on 28h ago.

add_monitor domain*
Add a domain to ongoing certificate monitoring with expiry alerts. Requires authentication (the user runs /mcp once). If the plan's monitor limit is reached, the response's structu…
add_monitors domains*
Add multiple domains to monitoring in one call. Returns a per-domain status so the caller can show partial-success outcomes. Honors the same plan-limit checks as add_monitor.
check_certificate_propagation read-only order_id*
Check whether the DNS TXT records for a certificate order have propagated (Cloudflare/Google/Quad9). Step 2 of issuance - poll until all_found is true, then call finalize_certifica…
create_certificate email*domain*challengeclient_idmarketing_consent
Start issuing a FREE 90-day Let's Encrypt certificate for a domain (no account required). Step 1 of 3. Pick a validation method with `challenge`: "dns-01" (default; publish a TXT r…
export_monitors read-only
Dump the user's monitors as a JSON structure suitable for backup, migration, or infrastructure-as-code workflows. Tokens and PII are NEVER included - only domain configuration.
finalize_certificate csr_pemorder_id*passphraseresume_tokenmax_wait_seconds
Finalize and issue a certificate order in one call: validates the DNS challenges, waits for Let's Encrypt, and returns the issued cert. Step 3 of issuance - call after check_certif…
get_account read-only
Return the current user's plan, limits, and usage so the client can render upgrade nudges proactively.
get_certificate_status read-only order_id*
Return the current state of a certificate order (dns_pending, validating, ready, completed, failed) and per-authorization Let's Encrypt statuses. Use it to resume an interrupted is…
get_scan_history read-only limitdomain*
Return recent scan results for a domain the user monitors. Useful for spotting issuer changes, grade drops, or vulnerability appearances over time.
import_monitors payload*
Create monitors from a JSON structure (typically produced by `export`). Skips domains the user is already monitoring; honors the plan's domain limit. Returns a per-domain status.
invite_team_member roleemail*team_id
Invite a user to a team by email. Defaults to the user's current team. Honors the plan's seat limit (returns the same upgrade payload as add_monitor when the cap is hit).
list_expiring_certificates read-only within
Return monitored certificates expiring within N days. Defaults to 30. If the response's structuredContent includes a `nudge` object, the user is watching enough soon-to-expire cert…
list_monitors read-only
List all certificates currently being monitored across the user's teams. If the response's structuredContent includes a `nudge` object, the user is at their monitor cap - surface i…
register_beacon_order email*domain*order_id*webhook_secret
OBSOLETE - do not call. The cert→monitoring handoff is server-side now (issue via create_certificate, which records the order itself). This tool is kept only so old plugin versions…
remove_monitor can modify data domainhost_id
Stop monitoring a domain. Accepts the domain name or the host_id returned by list_monitors.
renew_certificate order_id*
Renew a certificate by cloning a recent order (requires the original order_id; Beacon purges orders after ~24h). Returns a new order_id and fresh DNS TXT records - then poll check_…
scan_domain read-only domain*client_id
Run a free, anonymous SSL/TLS scan against a hostname and return certificate details. No account required.