SSL/TLS Certificate Lookup

Check a domain's SSL/TLS certificate — who issued it, when it expires, and whether the chain is trusted

SSL/TLS Certificate for dfit.co.ke

Expiring soon
Issued by (CA)
Let's Encrypt
Subject
dfit.co.ke
Valid from
Jun 11, 2026
Valid until
Sep 9, 2026 (4 days remaining)
Public key
RSA 2048-bit
Serial
05CF868E510CC2F441FC89A615E511C2E3B3
SHA-256 fingerprint
9D:4D:59:4C:66:23:C0:E4:79:15:2A:E1:DE:BF:F2:E7:E8:C7:27:B4:93:24:8D:54:73:AC:94:6F:3E:20:A1:D4
Chain
YR2 → Root YR → ISRG Root X1
Subject Alternative Names (2)
*.dfit.co.ke, dfit.co.ke

Certificate Authority Authorization (CAA)

No CAA policy is published for this domain — any certificate authority may issue for it.

This certificate has been served since Aug 12, 2026.

Never get surprised by dfit.co.ke's certificate expiring

This is today's certificate. Turn on monitoring and we'll watch dfit.co.ke continuously, notifying you the moment anything moves across all three signals:

Uptime

We visit the site from multiple regions worldwide and email you within minutes if it goes down, with a per-region breakdown so a real outage stands out from a regional blip.

DNS changes

We watch NS, MX, CAA, DNSSEC, CNAME and A/AAAA records, and identify the host, network, and ASN behind them, so a real migration or hijack stands out from routine noise.

TLS certificate

We warn you 30, 14, 7, and 1 days before it expires, and flag it if the issuing authority changes or the certificate is unexpectedly replaced.

Monitor this certificate free

Free for your first domain: uptime, DNS, and certificate together. No credit card.