SSL/TLS Certificate Lookup

Check a domain's SSL/TLS certificate — who issued it, when it expires, and whether the chain is trusted

SSL/TLS Certificate for werock.agency

Self-signed
Issued by (CA)
Acme Co
Subject
Kubernetes Ingress Controller Fake Certificate
Valid from
Sep 23, 2026
Valid until
Sep 23, 2027 (352 days remaining)
Public key
RSA 2048-bit
Serial
446EC1A869A9E393AB5E624E3DFB2D48
SHA-256 fingerprint
9C:F7:17:BC:C7:0A:7A:34:FC:BF:1A:A2:58:1F:41:0D:FA:E1:A7:06:36:61:51:82:65:7B:B1:87:02:AB:13:3C
Chain
—
Subject Alternative Names (1)
ingress.local

Certificate Authority Authorization (CAA)

CAA restricts issuance to amazon.com, comodoca.com, digicert.com, letsencrypt.org; we couldn't map the serving CA (Acme Co) to one of these identifiers.

Never get surprised by werock.agency's certificate expiring

This is today's certificate. Turn on monitoring and we'll watch werock.agency continuously, notifying you the moment anything moves across all three signals:

Uptime

We visit the site from multiple regions worldwide and email you within minutes if it goes down, with a per-region breakdown so a real outage stands out from a regional blip.

DNS changes

We watch NS, MX, CAA, DNSSEC, CNAME and A/AAAA records, and identify the host, network, and ASN behind them, so a real migration or hijack stands out from routine noise.

TLS certificate

We warn you 30, 14, 7, and 1 days before it expires, and flag it if the issuing authority changes or the certificate is unexpectedly replaced.

Monitor this certificate free

Free for your first domain: uptime, DNS, and certificate together. No credit card.