Why wouldn’t you just keep the Field always there and if there is no expected change just have it return the same value. We use this tool extensively and would like to get assurance that if there is a planned change such as the ones coming in 1st March this year we get sight of it via the api.
Is there a documentation page on these various flags and configurations that are associated with future grade changes? The API docs you reference above list the flags, but make no mention of what the impact to grade will be for each of these
For example, you mention F grade due to ROBOT vulnerability, and B grade due to forwardSecrecy field or lack of AEAD ciphers, but are those the only three future grade-impacting problems?
Even in the blog post you link above, there is a fourth change regarding treatment of Symantec certificates.
It seems more than a little unnecessary to require API users to parse each blog post and update their checks for future grade impacts on a flag-by-flag basis when SSLLabs is already doing the work to display these warnings in the UI-based scan, not to mention the seemingly ever-changing dates on when these issues will make it to the visible grade. We use SSLLabs as a valuable resource to check our certificate configuration, and protocols & ciphers posture against with a quick scan, and it doesn't make sense to build a variety of custom code to parse the myriad API results ourselves when scans by other parties would simply be done through the UI and show future results that would not be clearly and immediately represented in the API.
If futureGrade is planned to be used again, is there any potential timeline for when it will be reintroduced?