Free tool · No sign-up · Server-assisted
SSL Certificate Checker
Check a domain's TLS certificate: who issued it, when it expires, how many days are left, which hostnames it covers, and whether the chain to a trusted root is intact. Catches the two failures that take a site down without warning — an expired certificate and a name it does not actually cover.
Server-assisted · we open a TLS connection to the host on port 443 and read back its certificate
Method & assumptions
- This is a server-assisted tool: a browser cannot inspect a raw certificate, so our server completes a TLS handshake to the host on port 443 and reads back what it presents.
- Only the host you enter is sent, and only to our server, which connects once. Nothing is stored.
- Certificate validation is turned off for the read, on purpose — that is the only way to report an expired or mismatched certificate rather than just failing. The trust result above reflects standard validation separately.
- Hostname coverage honours wildcard rules: *.example.com covers a.example.com, but not example.com or a.b.example.com.
Other tools
More on the bench
- 01
DNS Lookup
Every record for a domain, from your browser. - 02
SPF, DKIM & DMARC Checker
Is your domain safe to spoof? - 03
Supabase Security Auditor
Point it at your project, find the holes. - 04
JWT Decoder
Paste a token, read what is inside. - 05
Secret & .env Scanner
Paste code or a .env, catch the leaked keys. - 06
Security Headers Scanner
Enter a URL, grade its headers. - 07
CORS Tester
See exactly what a URL allows cross-origin. - 08
Base64 Encode / Decode
Text or files, both directions.
Software engineering
We write the software
behind tools like these
Anyone who has ever been paged because a certificate expired at 2am on a Sunday.
- Free diagnostics
- Same-day across most of the metro
- Named technicians
- No fix, no labour charge