Certificate Expiry Checker

Processing: API. Processed by cent-ai's API: sent to our server, held in memory, never stored.

Enter a domain or paste a certificate to check its expiry, with clear severity levels and a recommendation. Nothing you enter here is stored or logged.

How to use it

  1. Enter a hostname (e.g. example.com) or paste a PEM certificate.
  2. Select “Check expiry” to run the check.
  3. Review the severity and days remaining.

Example

Select “Use example” above to load a sample domain.

Privacy and security

  • Input is sent to our API only to run the check; it is never persisted or logged.
  • For the domain path: private, loopback, link-local, and other reserved IP ranges are blocked.
  • For the certificate path: parsing happens in memory, with no network access.

Limitations

  • Does not (yet) support recurring/scheduled monitoring — this is a one-time, on-demand check.
  • For the domain path, defaults to port 443.

FAQ

What are the severity thresholds?

Healthy: more than 60 days remaining. Watch: 30–60 days. Warning: 7–30 days. Critical: under 7 days. Expired: 0 days or fewer. These are documented, fixed thresholds, not scored against any external methodology.

Can I check a certificate file instead of a live domain?

Yes — paste a PEM-encoded certificate instead of a hostname and it's parsed directly, with no network connection made.