Free SSL Expiry Checker

When does your SSL certificate expire?

Or try

Enter a domain to see its certificate's exact expiry date and the number of days remaining, read live from the server rather than from a cache.

0seconds of grace period. A certificate is fully valid, then fully invalid, and every browser switches at the same instant.

Why the expiry date is the number that matters

A certificate does not degrade. It is completely valid, and then at a precise timestamp it is completely invalid, and every browser in the world switches to a blocking warning at once. There is no grace period and no partial failure to warn you first.

That makes the days-remaining number the only useful metric. Knowing a certificate is “valid” tells you nothing — it was valid the day before it expired too. Knowing it has four days left tells you what to do this afternoon.

Why manual tracking always fails eventually

The usual system is a spreadsheet of renewal dates, and it works right up to the point where it doesn’t. Certificates get reissued early and the new date never makes it into the sheet. A site moves behind Cloudflare and starts presenting a different certificate on a different schedule. Someone leaves and the column stops being updated.

Ninety-day certificates make it worse, not better. Auto-renewal removes the deadline from anyone’s calendar entirely, so when the renewal silently breaks there is no longer a human anywhere in the loop who expects to hear about it.

Auto-renewal removed the deadline from everyone’s calendar. When the renewal hook silently breaks, there is no longer a human in the loop who expects to hear about it.

How Zeqo Watch works for you

This page answers the question for one host, right now. It performs a real handshake and reports the certificate’s `notAfter` date with the days remaining.

Zeqo Watch does it every day for every domain you add, and tells you when a certificate crosses into the warning window — with enough notice to fix a broken renewal hook rather than scramble for an emergency reissue.

Add the client sites once, and expiry stops being something anyone has to remember.

Start monitoring free →

Frequently asked questions

How do I check when my SSL certificate expires?+

Enter the domain above. We perform a live TLS handshake and report the certificate’s expiry date along with the number of days remaining.

How long are SSL certificates valid for?+

Let’s Encrypt and most other automated certificates last 90 days and renew themselves. Paid certificates typically run up to 13 months. In both cases the risk is the same: an automated renewal that silently stops working.

How many days before expiry should I act?+

Zeqo Watch warns at 14 days remaining. That’s enough time to diagnose a broken renewal hook or a failing ACME challenge during working hours rather than reissuing a certificate under pressure.

Why did my certificate expire if auto-renewal was set up?+

Almost always because the renewal broke rather than because nobody renewed. A server migration drops the cron job, a new CDN or proxy starts intercepting the ACME challenge, or a config change breaks the hook. The certificate stays valid the whole time, so nothing surfaces the failure until the day it lapses.

Keep reading

More free tools

No signup. Each one runs a real check in a few seconds.