AI EASM Agent — SSL Certificate Expiry
A passive EASM agent: domain discovery and TLS certificate verification without intrusive interaction with the assets.
Overview
The agent flags expiring certificates, configuration changes and newly related assets, feeding the asset graph with up-to-date risk.
Capabilities
- Passive domain discovery
- TLS certificate verification with expiry alerting
- Defensive limits per collection run (assets, findings, relationships)
- Findings history per perimeter
- Synchronization with perimeters created through the API
Use Cases
- Discover exposed domains and assets nobody registered
- Get ahead of TLS certificate expiry before service goes down
- Identify weak certificate and TLS configurations
- Keep a living inventory of your external perimeter
Integrations
- OODA EASM / Recon / Monitoring
- OpenSearch
- Platform REST API
SLA & Guarantees
Continuous passive monitoring · early expiry warning