SSL certificate checker
Enter a domain and see who issued its SSL/TLS certificate, when it expires, how many days are left, and which hostnames it covers — read straight from the public Certificate Transparency logs. No sign-up, runs in your browser.
How to read the result
- Days until expiry — green means more than 30 days left, amber means 8–30 (time to plan a renewal), red means 7 or fewer days — or already expired.
- Issuer / CA — the certificate authority that signed it (e.g. Let's Encrypt, DigiCert, Google Trust Services).
- Covered hostnames — the SANs the certificate is valid for. If the domain you entered isn't in this list, browsers will show a name-mismatch error.
- Certificate history — recent certs in the CT logs. Frequent reissues (e.g. every ~60–90 days) are normal for automated CAs like Let's Encrypt.
FAQ
Where does this SSL checker get its data?
It reads the public Certificate Transparency (CT) logs, where every certificate a CA issues is recorded, so it never has to connect to the site itself.
What does it tell me about a certificate?
The issuing CA, the valid-from and valid-until dates, days until expiry, the hostnames the certificate covers, and recent certificate history.
Does it check the live certificate the server is actually serving?
No — for the live served chain, the TLS versions in use and an A–F grade, use the SSL Labs deep scan link in the results.
Is this free and private?
Yes — free, no sign-up. It runs in your browser and nothing is stored.
The certificate is valid — but is the site actually reachable from your machine?
A good cert doesn't help if DNS, your network, or your own computer is the thing in the way. Acutis Go runs the full check — network, DNS and your machine — in 60 seconds and tells you exactly where the problem is. Free.
Get Acutis Go — freeMore IT tools: Domain WHOIS · DNS lookup · MX lookup · All tools →
Acutis