Response
{
"host": "example.com",
"ascii_host": "example.com",
"port": 443,
"addresses": [{ "address": "203.0.113.10", "family": "IPv4" }],
"connected_address": "203.0.113.10:443",
"certificate": {
"subject": "CN=example.com",
"subject_common_name": "example.com",
"issuer": "C=US, O=Example CA, CN=Example TLS ECC CA 3",
"issuer_common_name": "Example TLS ECC CA 3",
"issuer_organization": "Example CA",
"serial": "0624D0AB311558780B7D5213B9631831",
"version": 3,
"not_before": "2026-07-29T22:10:08Z",
"not_after": "2026-10-27T22:17:21Z",
"days_remaining": 52,
"expiry_band": "ok",
"lifetime_days": 90,
"sans": ["example.com", "*.example.com"],
"san_ips": [],
"key": { "algorithm": "EC", "bits": 256, "curve": "P-256" },
"signature_algorithm": "ecdsa-with-SHA256",
"is_certificate_authority": false,
"self_issued": false,
"extended_key_usage": ["serverAuth"],
"ocsp_responders": ["http://ocsp.example-ca.net"],
"ca_issuers": ["http://i.example-ca.net/issuer.cer"],
"fingerprint_sha256": "61:53:A9:6F:D1:A6:AB:7F:4D:43:8F:C3:49:32:48:42:99:D0:72:9D:91:40:B3:A1:26:BB:2F:9C:07:B0:22:00"
},
"chain_length": 3,
"hostname_match": { "matched": true, "matched_name": "example.com", "checked_names": ["example.com", "*.example.com"], "used_common_name": false },
"https": { "reachable": true, "method": "HEAD", "status": 200, "location": null, "strict_transport_security": "max-age=31536000", "alt_svc": null, "server": "example", "error": null },
"probe": { "certificate_read": true, "method": "tls12-clienthello", "negotiated_version": "TLS 1.2", "cipher_suite": "ECDHE-ECDSA-AES128-GCM-SHA256", "alert": null, "error": null, "elapsed_ms": 101 },
"checked_at": "2026-09-05T14:02:11Z",
"source": "whatsmyip.fyi"
}