Free tools · no login
🔒 SSL certificate check
Expiry date, days left, issuer, SANs, negotiated TLS version, and whether the chain, hostname and trust are in order.
Invalid
Invalid · 725 days left
Expires 2028-09-14 21:01 UTC
https://self-signed.badssl.com · checked 2026-09-20 01:44 UTC from Vigil's servers
not trusted
TLSv1.2
Checks
| ✕ | Trusted chain chain incomplete, untrusted or self-signed |
fail |
| ✓ | Hostname matches certificate covers self-signed.badssl.com |
pass |
| ✓ | Not expired 725 days left |
pass |
| ✕ | Not self-signed issued by BadSSL |
fail |
| ✓ | Modern TLS negotiated TLSv1.2 · ECDHE-RSA-AES128-GCM-SHA256 |
pass |
Problems
Certificate is self-signed
high
Use a certificate from a public CA (Let's Encrypt is free) so browsers trust it.
Certificate
- Subject
- *.badssl.com · BadSSL
- Issuer
- BadSSL (*.badssl.com)
- Valid from
- 2026-09-15 21:01 UTC
- Valid until
- 2028-09-14 21:01 UTC (725 days)
- Serial
- e010505557251e9c
- Protocol
- TLSv1.2 · ECDHE-RSA-AES128-GCM-SHA256
- SANs (2)
- *.badssl.combadssl.com
Share this result:
Run the other free checks on this site:
Watch this automatically
Monitor this site free
Vigil re-checks every minute and tells you the moment something changes
Uptime checks every minute with latency history, weekly security rescans with an alert when the grade drops, SSL expiry alerts and domain expiry alerts, plus DNS-change detection. Alerts on Telegram, Slack, Discord, email or any webhook.
Free plan, no card. Set up in 60 seconds. Start with https://self-signed.badssl.com/.