An expired SSL certificate throws a full-page security warning. An expired domain takes the whole site — and the email — offline. Both fail silently, right up until the deadline. StatusKit watches every client's cert and domain and warns you at 30, 14, 7 and 1 days — long before anyone else notices.
Downtime usually arrives from the outside — a bad deploy, a DDoS, a provider hiccup. Certificate and domain expiry are different: you own the renewal, the date is known months ahead, and the failure is total when it lands. A lapsed cert turns every visitor's browser into a red warning screen. A lapsed domain deletes the site and the client's email in one stroke. For an agency, that's not a glitch — it's the client watching you miss a date you were paid to keep. StatusKit exists so that date never sneaks up.
A single "it expires today" alert is useless; renewals take time. StatusKit escalates across four tiers so the warning matches the urgency — an early, calm heads-up, then sharper reminders as the deadline closes in. Each tier fires once when it's crossed, for both SSL certificates and domain registration:
First notice — plenty of runway to renew calmly.
Two weeks out. Put the renewal on someone's desk.
One week. This is the escalation you can't ignore.
24 hours. Renew now or the site breaks tomorrow.
Every alert names the site, says whether it's the certificate or the domain, and gives the exact days remaining — by email and by webhook, so it lands in Slack, Teams or PagerDuty next to the rest of your on-call.
Managing one site, a calendar reminder is enough. Managing forty client sites, calendar reminders are how things slip. StatusKit's Expiring-soon view collapses every certificate and domain you monitor into a single list sorted by days remaining, so a ten-second glance each Monday tells you exactly what to renew this week — across every client, in one place.
You don't need a login to your client's server or registrar. StatusKit reads the certificate straight off the live TLS handshake and the domain's expiry straight from the public RDAP registry record — the same sources a browser and a registrar use. Add a hostname, and it's monitored. That means you can watch a prospect's sites before you've even onboarded them, and hand a client a branded status page without touching their infrastructure. Prefer to manage it in Git? The whole fleet can live in a version-controlled monitors.json.
Add each site once and StatusKit watches its certificate on a schedule from the edge. The Expiring-soon fleet view then shows every cert and domain across all your clients sorted by days remaining, so one screen tells you what to renew this week. There's no per-server agent and no manual date-keeping — the whole fleet is one list.
At four tiers: 30, 14, 7 and 1 day before expiry. You get an early heads-up with room to renew calmly, then escalating reminders as the deadline closes in — each sent once when the threshold is crossed, so you're never spammed and never surprised. Domain registration expiry is watched on the same 30/14/7/1 ladder.
An SSL certificate expiring throws a full-page browser security warning — the padlock breaks and visitors are told the site is unsafe. A domain expiring is worse: the name stops resolving entirely and email dies with it. Both are silent until the deadline, both are catastrophic, and StatusKit watches both — cert via a live TLS probe, domain via RDAP registry data.
Yes. StatusKit reads the certificate straight off the live TLS handshake and the domain's expiry straight from the public RDAP registry record — exactly what a browser and a registrar see. You need nothing installed on their infrastructure and no credentials. If you can reach the site, you can monitor its cert and domain.
Email and webhook, the moment a threshold is crossed. Point the webhook at Slack, Microsoft Teams, PagerDuty or your own endpoint and expiry warnings land in the channel your team already watches. Every alert names the site, whether it's the cert or the domain, and the exact days remaining.
Start free — the SSL & domain checker reads any site's certificate and domain expiry right now, no signup. Create an account to put a client fleet under continuous 30/14/7/1 monitoring with alerting and a branded status page. Pricing is flat per fleet, not per-seat — see the console.
Paste any hostname into the free checker and read its live certificate and domain expiry in seconds. When you're ready, put a whole client fleet under 30/14/7/1 monitoring with alerts and a status page.