Is this site's SSL certificate valid and trustworthy?
An expired, mismatched or freshly issued certificate is a warning sign — especially on a site asking for payment or login.
DARKSHARE inspects the certificate and its transparency-log history so you can judge trust at a glance.
Is this site's SSL certificate valid and trustworthy?
3 anonymous scans a day · no signup · zero query logs
Check it free nowWhat we check
- ✓Validity — issued/expiry dates and whether the certificate is current.
- ✓Issuer & chain — certificate authority and a complete trust chain.
- ✓Hostname match — does the certificate actually cover the domain.
- ✓CT history — recent certificates from transparency logs (sudden new certs can signal impersonation).
Data sources we cross-reference
We cross-reference 26+ specialised sources (of 176+ total).
How the 0–100 risk score works
An expired, self-signed or mismatched certificate raises risk. A valid certificate from a trusted CA with consistent history scores low.
Frequently asked questions
Does a valid certificate mean the site is legit?
No — it only proves the connection is encrypted. Scam sites use valid free certificates too. Combine with our domain and reputation checks.
What is certificate transparency?
Public logs of every issued certificate. A burst of new certs for a brand-like domain can reveal phishing prep.
Why warn on a brand-new certificate?
Phishing sites are short-lived, so their certificates are often days old. It's one signal among many.