# SSL Labs API

> SSL Labs returns HTTPS security grades, server and certificate details, protocols, and weaknesses, available as a workflow and API.

SSL Labs (SSLLabs) returns HTTPS grades, server details, certificate information, supported protocols, and known weaknesses. Check ssl certificate needs a website domain or URL and can reuse a report from the last 72 hours.

- Page: https://fous.com/tools/ssl-labs
- Handle: `@ssl-labs`
- Category: [Security](https://fous.com/tools/category/security)
- Source website: https://ssllabs.com
- Last verified: Sep 29, 2026

## Methods

### Check ssl certificate

Operation `check_ssl_certificate`, version 1. 1 credit per completed call. Failed calls without a completed billing receipt are free; completed work can remain charged if delivery is interrupted.

Check a website’s SSL Labs HTTPS security grade, servers, certificate, protocols, and known weaknesses. Cached results from the last 72 hours are reused by default; a fresh assessment can take several minutes and may exceed the call time limit. Results are kept off public boards.

**Input**

| Field | Type | Required | Example | Description |
|---|---|---|---|---|
| `website` | string | yes | `"github.com"` | Website domain or URL, for example https://github.com/about. |
| `use_cached` | boolean | no |  | Reuse a report from the last 72 hours when available, for example true; set false to request a fresh test. |

**Input schema**

```json
{
  "type": "object",
  "required": [
    "website"
  ],
  "properties": {
    "website": {
      "type": "string",
      "description": "Website domain or URL, for example https://github.com/about.",
      "examples": [
        "github.com",
        "https://www.ssllabs.com/ssltest/",
        "www.google.com"
      ]
    },
    "use_cached": {
      "type": "boolean",
      "default": true,
      "description": "Reuse a report from the last 72 hours when available, for example true; set false to request a fresh test."
    }
  },
  "additionalProperties": false,
  "examples": [
    {
      "website": "github.com"
    },
    {
      "website": "https://www.ssllabs.com/ssltest/"
    },
    {
      "website": "www.google.com"
    }
  ]
}
```

**Output**

| Field | Type | Example | Description |
|---|---|---|---|
| `domain` | string | `"github.com"` | Website domain that was tested. |
| `servers` | array |  | Server addresses and grades. |
| `servers[].grade` | string or null | `"A+"` |  |
| `servers[].ip_address` | string | `"140.82.112.3"` |  |
| `servers[].results_page_link` | string | `"https://www.ssllabs.com/ssltest/analyze.html?d=github.com&hideResults=on&s=140.82.112.3"` |  |
| `test_date` | string | `"2026-09-28"` |  |
| `overall_grade` | string | `"A+"` | Lowest SSL Labs grade across the tested servers. |
| `known_weaknesses` | array |  |  |
| `days_until_expiry` | integer or null | `33` |  |
| `results_page_link` | string | `"https://www.ssllabs.com/ssltest/analyze.html?d=github.com&hideResults=on"` |  |
| `certificate_issuer` | string or null | `"Sectigo Limited"` |  |
| `supported_protocols` | array |  |  |
| `certificate_expiry_date` | string or null | `"2026-11-01"` |  |

**Example input**

```json
{
  "website": "github.com"
}
```

**Example output**

```json
{
  "domain": "github.com",
  "servers": [
    {
      "grade": "A+",
      "ip_address": "140.82.112.3",
      "results_page_link": "https://www.ssllabs.com/ssltest/analyze.html?d=github.com&hideResults=on&s=140.82.112.3"
    }
  ],
  "test_date": "2026-09-28",
  "overall_grade": "A+",
  "known_weaknesses": [],
  "days_until_expiry": 33,
  "results_page_link": "https://www.ssllabs.com/ssltest/analyze.html?d=github.com&hideResults=on",
  "certificate_issuer": "Sectigo Limited",
  "supported_protocols": [
    "TLS 1.3",
    "TLS 1.2"
  ],
  "certificate_expiry_date": "2026-11-01"
}
```

## Quick start

Replace `YOUR_API_KEY` with a Fous API key. To create one, open Developers at the bottom of Fous Studio, turn on Developer mode, then go to API keys (https://app.fous.com/keys). Change the values in `input` to run the same tool on new data.

```bash
curl 'https://api.fous.com/v1/query' \
  --fail-with-body --silent --show-error --max-time 180 \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H 'Content-Type: application/json' \
  --data-raw '{
  "api": "@ssl-labs",
  "visibility": "public",
  "operation": "check_ssl_certificate",
  "version": 1,
  "input": {
    "website": "github.com"
  },
  "response": {
    "format": "json"
  }
}'
```

```python
# Save as fous.py and run with python3 fous.py. No packages needed.
import json
import urllib.error
import urllib.request

api_key = "YOUR_API_KEY"

body = json.loads("{\n  \"api\": \"@ssl-labs\",\n  \"visibility\": \"public\",\n  \"operation\": \"check_ssl_certificate\",\n  \"version\": 1,\n  \"input\": {\n    \"website\": \"github.com\"\n  },\n  \"response\": {\n    \"format\": \"json\"\n  }\n}")
request = urllib.request.Request(
    "https://api.fous.com/v1/query",
    data=json.dumps(body).encode("utf-8"),
    headers={
        "Authorization": f"Bearer {api_key}",
        "Content-Type": "application/json",
    },
    method="POST",
)
try:
    with urllib.request.urlopen(request, timeout=180) as response:
        result = json.load(response)
except urllib.error.HTTPError as error:
    raise RuntimeError(f"HTTP {error.code}: {error.read().decode('utf-8', errors='replace')}") from error
if result.get("success") is False:
    raise RuntimeError(result.get("error", {}).get("message", "Request failed"))
print(json.dumps(result["data"]["output"], indent=2))
```

```typescript
// Save as fous.mts and run with npx tsx fous.mts.
const apiKey = "YOUR_API_KEY";

const response = await fetch("https://api.fous.com/v1/query", {
  method: "POST",
  headers: {
    "Authorization": `Bearer ${apiKey}`,
    "Content-Type": "application/json",
  },
  signal: AbortSignal.timeout(180_000),
  body: JSON.stringify({
  "api": "@ssl-labs",
  "visibility": "public",
  "operation": "check_ssl_certificate",
  "version": 1,
  "input": {
    "website": "github.com"
  },
  "response": {
    "format": "json"
  }
}),
});
type ApiResult = { success: boolean; data?: { output: unknown }; error?: { message: string } };
const result: ApiResult = await response.json();
if (!response.ok || result.success === false) {
  throw new Error(result.error?.message ?? `HTTP ${response.status}`);
}
if (!result.data) throw new Error("Missing API response data");
console.log(result.data.output);
```

## Use from an AI assistant

Connect this tool to Claude Code, Claude Desktop, Cursor, VS Code, Codex and any MCP client as its own MCP server. Each method is a typed tool whose arguments are the method’s input.

- Server URL: `https://api.fous.com/mcp/tools/ssl-labs`
- Authorization: `Authorization: Bearer <Fous API key>`

**Tools**

- `check_ssl_certificate`: Check ssl certificate. 1 credit per completed call. Failed calls without a completed billing receipt are free; completed work can remain charged if delivery is interrupted.
- `fous_get_run`: the result of a run that was still going, by its `request_id`. Free.

Claude Code:

```bash
claude mcp add --scope user --transport http fous-ssl-labs https://api.fous.com/mcp/tools/ssl-labs --header "Authorization: Bearer ${FOUS_API_KEY:?Set FOUS_API_KEY to your Fous API key}"
```

To give the assistant every tool, connect `https://api.fous.com/mcp`: it finds one with `fous_search_tools` and runs it with `fous_run_tool`. Setup for other clients: https://fous.com/llms-full.txt.

## Use cases

- Compare HTTPS grades across a website’s servers
- Review certificate expiry dates and issuers
- Identify supported protocols and known weaknesses
- Track certificate expiry dates for monitored websites

## FAQ

### Can I run it with my own inputs?

Yes. Change the inputs in Studio and press Run, or send new inputs from your code, or ask a connected AI assistant.

### Can I call this SSL Labs tool as an API?

Yes. Send a POST request to /v1/query with your Fous API key and the inputs, and get JSON back.

### How much does it cost?

Each completed run costs 1 credit. Failed runs without a completed receipt are free; completed work can remain charged if delivery is interrupted. With pay as you go, a credit costs 1¢. Monthly plans cost less per credit.

### Do I need a SSL Labs account?

No. You only need a Fous account.

### How current is the data?

Fous gets the data from ssllabs.com when you run it. Some results are reused for up to 24 hours, and results that use your account or key are never reused. It was last verified on Sep 29, 2026.

### What HTTPS grade did the website receive?

Check ssl certificate returns the overall grade and grades for tested servers.

### When does the website’s certificate expire?

Check ssl certificate returns the certificate expiry date and days until expiry.

### Which protocols does the website support?

Check ssl certificate returns the supported protocols.

## Related

- [Google PageSpeed Insights API](https://fous.com/tools/google-pagespeed-insights.md): Check web page speed and quality on mobile and desktop.
- [crt.sh API](https://fous.com/tools/crt-sh.md): Public certificate transparency search for issued certificates and names they cover.
- [Have I Been Pwned API](https://fous.com/tools/have-i-been-pwned.md): Find public records of known data breaches.
- [ICANN Lookup API](https://fous.com/tools/icann-lookup.md): Public domain registration lookup using ICANN registration data.
- [National Vulnerability Database API](https://fous.com/tools/national-vulnerability-database.md): The U.S. National Vulnerability Database provides publicly reported security vulnerabilities, with recent product matches and CVE details, including CISA catalog status and affected versions when reported.
- [QS Top Universities API](https://fous.com/tools/qs-top-universities.md): QS Top Universities provides rankings and profiles with latest world ranks, student figures, up to five subject ranks and listed tuition; subject editions may differ.
- [Cloudflare Radar API](https://fous.com/tools/cloudflare-radar.md): Cloudflare Radar provides internet trends, domain popularity and weekly rank history only for top-100 sites, plus recent and ongoing outages with locations when identified.
- [BuiltWith API](https://fous.com/tools/builtwith.md): Discover technologies used by websites.
- [All Security tools](https://fous.com/tools/category/security)
