AI EASM Agent — SSL Certificate Expiry // MODULES

AI EASM Agent — SSL Certificate Expiry

A passive EASM agent: domain discovery and TLS certificate verification without intrusive interaction with the assets.

Overview

The agent flags expiring certificates, configuration changes and newly related assets, feeding the asset graph with up-to-date risk.

Capabilities

  • Passive domain discovery
  • TLS certificate verification with expiry alerting
  • Defensive limits per collection run (assets, findings, relationships)
  • Findings history per perimeter
  • Synchronization with perimeters created through the API

Use Cases

  • Discover exposed domains and assets nobody registered
  • Get ahead of TLS certificate expiry before service goes down
  • Identify weak certificate and TLS configurations
  • Keep a living inventory of your external perimeter

Integrations

  • OODA EASM / Recon / Monitoring
  • OpenSearch
  • Platform REST API

SLA & Guarantees

Continuous passive monitoring · early expiry warning

Next Steps