SSL/TLS Certificate Lookup

Check a domain's SSL/TLS certificate — who issued it, when it expires, and whether the chain is trusted

SSL/TLS Certificate for it.to

Hostname mismatch
Issued by (CA)
Sectigo Limited
Subject
*.cli.co
Valid from
Aug 5, 2026
Valid until
Feb 19, 2027 (189 days remaining)
Public key
RSA 2048-bit
Serial
21363B02C15D688EAB61A0ED00C2F6EB
SHA-256 fingerprint
41:0A:CE:E8:39:05:3B:2D:79:43:EF:2A:6C:40:C3:5C:54:A7:1C:E5:EE:4D:70:05:3F:70:9B:F8:86:90:2D:45
Chain
Sectigo Public Server Authentication CA DV R36 → Sectigo Public Server Authentication Root R46 → USERTrust RSA Certification Authority
Subject Alternative Names (2)
*.cli.co, cli.co

Certificate Authority Authorization (CAA)

No CAA policy is published for this domain — any certificate authority may issue for it.

We've observed 1 previous certificate for this host. This certificate has been served since Aug 10, 2026.

Never get surprised by it.to's certificate expiring

This is today's certificate. Turn on monitoring and we'll watch it.to continuously, notifying you the moment anything moves across all three signals:

Uptime

We visit the site from multiple regions worldwide and email you within minutes if it goes down, with a per-region breakdown so a real outage stands out from a regional blip.

DNS changes

We watch NS, MX, CAA, DNSSEC, CNAME and A/AAAA records, and identify the host, network, and ASN behind them, so a real migration or hijack stands out from routine noise.

TLS certificate

We warn you 30, 14, 7, and 1 days before it expires, and flag it if the issuing authority changes or the certificate is unexpectedly replaced.

Monitor this certificate free

Free for your first domain: uptime, DNS, and certificate together. No credit card.