{
  "protocolVersion": "0.3.0",
  "name": "Ciphertronix",
  "description": "Discovery card for Ciphertronix (Pvt) Ltd - a Pakistani enterprise technology company (founded 2011, Karachi; also UK-registered) building eSentinel, an Enterprise Fraud Risk Management System (EFRMS) for banks, and STOS, a Smart Terminal Operating System for ports and terminals. Ciphertronix also operates a free, public, unauthenticated domain-inspection API (SSL certificates, HTTP security headers, robots.txt).",
  "version": "1.0.0",
  "url": "https://ciphertronix.com/api/tools.php",
  "preferredTransport": "HTTP+JSON",
  "documentationUrl": "https://ciphertronix.com/openapi.json",
  "iconUrl": "https://ciphertronix.com/assets/img/ciphertronix.png",

  "provider": {
    "organization": "Ciphertronix (Pvt) Ltd",
    "url": "https://ciphertronix.com"
  },

  "capabilities": {
    "streaming": false,
    "pushNotifications": false,
    "stateTransitionHistory": false
  },

  "defaultInputModes": ["text/plain", "application/json"],
  "defaultOutputModes": ["application/json", "text/markdown"],

  "securitySchemes": {},
  "security": [],

  "skills": [
    {
      "id": "inspect-ssl-certificate",
      "name": "Inspect SSL/TLS certificate",
      "description": "Retrieve the live SSL/TLS certificate for any public domain: issuer, validity window, expiry date and serial number. Answers questions like 'is example.com's certificate expired?' or 'who issued the certificate for example.com?'.",
      "tags": ["ssl", "tls", "certificate", "security", "https"],
      "examples": [
        "Is the SSL certificate for example.com still valid?",
        "Who issued example.com's TLS certificate and when does it expire?"
      ],
      "inputModes": ["text/plain"],
      "outputModes": ["application/json"]
    },
    {
      "id": "inspect-http-security-headers",
      "name": "Inspect HTTP security headers",
      "description": "Fetch the complete raw HTTP response headers for a domain, including every hop of the redirect chain. Useful for checking Content-Security-Policy, Strict-Transport-Security, X-Frame-Options, X-Content-Type-Options, Referrer-Policy and Permissions-Policy.",
      "tags": ["http", "headers", "csp", "hsts", "security"],
      "examples": [
        "Does example.com send an HSTS header?",
        "Show me the security headers and redirect chain for example.com."
      ],
      "inputModes": ["text/plain"],
      "outputModes": ["application/json"]
    },
    {
      "id": "inspect-robots-txt",
      "name": "Inspect robots.txt",
      "description": "Fetch and return the raw robots.txt of any public domain, so crawl rules, AI-crawler directives and sitemap declarations can be read and validated.",
      "tags": ["robots", "crawling", "seo", "ai-crawlers"],
      "examples": [
        "What does example.com's robots.txt say?",
        "Does example.com allow GPTBot?"
      ],
      "inputModes": ["text/plain"],
      "outputModes": ["application/json"]
    }
  ],

  "additionalInterfaces": [
    {
      "url": "https://ciphertronix.com/api/tools.php",
      "transport": "HTTP+JSON"
    }
  ],

  "_note": "TRUTHFULNESS DECLARATION. Ciphertronix does not currently run an A2A JSON-RPC task server. This card is published for DISCOVERY and IDENTITY: it tells agents who Ciphertronix is and describes capabilities that genuinely exist and can be invoked today over plain HTTP GET. Invoke the skills above via the documented REST endpoint (GET /api/tools.php?tool=ssl|headers|robots&host=<domain>) described in https://ciphertronix.com/openapi.json - not via an A2A message/send call. No authentication is required and CORS is open.",

  "_content": {
    "summary": "https://ciphertronix.com/llms.txt",
    "fullCorpus": "https://ciphertronix.com/llms-full.txt",
    "usagePolicy": "https://ciphertronix.com/ai.txt",
    "apiCatalog": "https://ciphertronix.com/.well-known/api-catalog",
    "skillsIndex": "https://ciphertronix.com/.well-known/skills.json",
    "markdownHint": "Any page is available as Markdown: send 'Accept: text/markdown', or append '.md' to the path."
  }
}
