Skip to main content

network · Command reference

qzx checkSslCertificate

What it does

Inspects certificate dates, hostname coverage, and trust-chain validation

Command maturity: Alpha

Available for real use and feedback while its interface and behavior can still evolve. This is the current development-checkout assessment. Every future immutable release tag preserves the exact assessment shipped by that version. Available in PyPI 0.2.2.0.8. This page documents the 0.2.2.0.8 alpha development checkout.

Behavior and built-in protections

Inspects without changing state

Direct execution for this operation

Works without invoking native programs

Uses network access for the documented task

No elevation required by design

This safety classification was reviewed by OpenAI GPT-5.6 Pro against implementation digest sha256:7088e925dfb51a403b6e268396831a213a446c8c31aa62830d3fa375a631e845 on 2026-08-25.

Exact syntax

qzx checkSslCertificate <host> [port] --json

Parameters

Swipe or use the horizontal scrollbar to see every column.

NameTypeRequiredDefaultDescription
hoststrYesNot declaredHostname of the server to check (for example, example.com)
portintNo443TLS port number

Input examples

qzx checkSslCertificate example.com

Inspect and validate example.com's certificate

qzx checkSslCertificate expired.badssl.com 443

Inspect an expired certificate while reporting the trust failure

For the complete structured payload, add --json: qzx checkSslCertificate <host> [port] --json

Representative output example

This illustrative JSON is derived from the current implementation-backed result contract. It shows what the command can return without claiming a recorded execution; values vary with inputs, host, permissions, and optional tools.

Example command: qzx checkSslCertificate example.com --json

{
    "success": true,
    "message": "Inspects certificate dates, hostname coverage, and trust-chain validation. In this illustrative example, the command completed successfully.",
    "meta": {
        "command": "checkSslCertificate",
        "command_maturity": {
            "stage": "alpha",
            "label": "Alpha",
            "sequence": 2,
            "public_executable": true,
            "stability": "interface_may_change",
            "summary": "Available for real use and feedback while its interface and behavior can still evolve.",
            "promotion_review_required": false,
            "assessment_scope": "development_checkout"
        },
        "duration_ms": 0,
        "schema_version": 1
    },
    "chain_trusted": true,
    "cipher_bits": 256,
    "cipher_protocol": "TLSv1.3",
    "cipher_suite": "TLS_AES_256_GCM_SHA384",
    "dates": {
        "not_before": "2026-06-01T00:00:00Z",
        "not_after": "2026-09-01T23:59:59Z"
    },
    "days_remaining": 38,
    "host": "example.com",
    "hostname_match": true,
    "is_expired": false,
    "is_started": true,
    "is_valid": true,
    "issuer": "CN=Example Trust Services",
    "port": 443,
    "ssl_version": "TLSv1.3",
    "subject": "CN=example.com",
    "subject_alt_names": [
        "example.com",
        "www.example.com"
    ],
    "verification_error": null
}
View the JSON result contract
{
    "$schema": "https://json-schema.org/draft/2020-12/schema",
    "type": "object",
    "required": [
        "success",
        "message",
        "meta"
    ],
    "properties": {
        "success": {
            "type": "boolean"
        },
        "message": {
            "type": "string"
        },
        "meta": {
            "type": "object",
            "required": [
                "command",
                "command_maturity",
                "duration_ms",
                "schema_version"
            ],
            "properties": {
                "command": {
                    "type": "string"
                },
                "command_maturity": {
                    "type": "object",
                    "required": [
                        "stage",
                        "label",
                        "sequence",
                        "public_executable",
                        "stability",
                        "summary",
                        "promotion_review_required",
                        "assessment_scope"
                    ],
                    "properties": {
                        "stage": {
                            "type": "string"
                        },
                        "label": {
                            "type": "string"
                        },
                        "sequence": {
                            "type": "integer"
                        },
                        "public_executable": {
                            "type": "boolean"
                        },
                        "stability": {
                            "type": "string"
                        },
                        "summary": {
                            "type": "string"
                        },
                        "promotion_review_required": {
                            "type": "boolean"
                        },
                        "assessment_scope": {
                            "type": "string"
                        },
                        "note": {
                            "type": "string"
                        },
                        "review": {
                            "type": "object",
                            "required": [
                                "reviewed_on",
                                "rationale",
                                "evidence"
                            ],
                            "properties": {
                                "reviewed_on": {
                                    "type": "string",
                                    "format": "date"
                                },
                                "rationale": {
                                    "type": "string"
                                },
                                "evidence": {
                                    "type": "array",
                                    "minItems": 1,
                                    "items": {
                                        "type": "string"
                                    }
                                },
                                "replacement": {
                                    "type": "string"
                                }
                            },
                            "additionalProperties": false
                        }
                    },
                    "additionalProperties": true
                },
                "duration_ms": {
                    "type": "number"
                },
                "schema_version": {
                    "type": "integer"
                }
            },
            "additionalProperties": true
        },
        "chain_trusted": [],
        "cipher_bits": [],
        "cipher_protocol": [],
        "cipher_suite": [],
        "dates": {
            "type": "object",
            "properties": {
                "not_before": {
                    "type": "null"
                },
                "not_after": {
                    "type": "null"
                }
            },
            "additionalProperties": true
        },
        "days_remaining": [],
        "error": {
            "type": "string"
        },
        "error_code": {
            "type": "string"
        },
        "host": [],
        "hostname_match": [],
        "is_expired": [],
        "is_started": [],
        "is_valid": [],
        "issuer": [],
        "port": [],
        "ssl_version": [],
        "subject": [],
        "subject_alt_names": [],
        "verification_error": []
    },
    "additionalProperties": true
}

Errors and limits

The public contract requires success=false and a descriptive message on failure. This catalog does not yet declare a command-specific error taxonomy; inspect the result and do not invent error codes.

QZX is alpha software. Optional dependencies, permissions, and host capabilities can change the result.

Evidence workflow: requires an authorized endpoint or reviewed fixture.

Evidence and provenance

Documentation channel
Development documentation 0.2.2.0.8 · main · sha256:9aa902dfb6b006017e52972bf7871fef49b03ec24ff80741231d743d0354bfc2
Availability
0.2.2.0.8 or earlier

Keep exploring

These commands also belong to the network category. Compare them to choose the operation that best fits your task.

Explore all QZX commands