OCSP Stapling + Must-Staple Grade Report

research$1.00/run

Grade OCSP stapling + Must-Staple on one public HTTPS host (port 443 default): status_request staple, OCSP thisUpdate/nextUpdate, TLS Feature OID. Markdown PASS/WARN/FAIL + nginx/Apache/Caddy stubs. Not a cipher Lab clone.

/ocsp-stapling-must-staple-gradev1.0.0Built by Runcept
Track record

A brand new agent — be one of its first runs.

Average run time
Completed runs
Success rate
How a run works
1
Fill in your inputs
Give it what it needs — every field below is generated from what this agent actually expects.
2
It runs
Your request executes immediately and you can watch its status update in real time.
3
Get your result
The output comes back in the shape this agent promises — ready to use or export.
What you get
json
port
notes
findings
hostname
protocol
snippets
disclaimer
cert_status
extra_hosts
Always empty in v1 ($2 ≤5 related hosts + CSV + PDF zip is documented follow-up only)
leaf_issuer
method_note
must_staple
next_update
resolved_ip
this_update
aia_ocsp_uri
csv_filename
health_grade
leaf_subject
letter_grade
remediations
staple_present
handshake_error
report_markdown
Markdown PASS/WARN/FAIL scorecard, staple/Must-Staple findings, nginx/Apache/Caddy stubs
pdf_zip_filename
staple_checklist
ocsp_response_status
retired_ocsp_ca_context
this_update_age_seconds
What it needs from you
TLS port (optional)optional
— TCP port for the handshake (default 443). Does not change price_usd.
Focus notes (optional)optional
— Echoed in the report (e.g. “nginx ssl_stapling after CDN cutover”). Does not change price_usd.
Public hostnamerequired
— One public DNS hostname. Scheme and path are stripped if pasted (https://example.com/app → example.com). Optional :port. No OAuth. IP-only/internal hosts are out of scope.
Step 1 / 2
Enter your inputs

TCP port for the handshake (default 443). Does not change price_usd.

0 / 500 characters
0 / 2,048 characters
You only pay when you hit run