SSL/TLS Checker
Nivaronix is a certificate and configuration checker: point it at a domain and it inspects the SSL/TLS certificate the same way a browser would, then reports certificate expiry, hostname match, trust, and protocol version issues in plain language.
This is not a penetration test and it does not scan for exploits or CVEs. It checks the certificate and TLS configuration a server presents on a normal connection.
Run a free SSL/TLS scanWhat it checks
Certificate expiry
Flags certificates that have already expired and ones expiring soon, before visitors see a browser warning.
Hostname match
Confirms the certificate's subject and Subject Alternative Names actually cover the domain being served.
Self-signed certificates
Detects certificates that were not issued by a trusted public Certificate Authority.
Untrusted CA
Flags certificates issued by a Certificate Authority that isn't in standard trust stores.
Weak or outdated TLS version
Checks the negotiated protocol version and flags legacy TLS 1.0 / TLS 1.1 support.
Certificate chain issues
Checks that the full chain to a trusted root is present and correctly ordered, not just the leaf certificate.
How it works
1. Enter a domain
Give the checker a hostname you own or manage. No install, no agent, no credentials required.
2. We connect over TLS
Nivaronix opens a TLS connection to the domain's public-facing endpoint and reads back the certificate and negotiated protocol version — the same way a browser would.
3. Results in seconds
You get expiry status, hostname match, chain validity, and TLS version, each scored with plain-language remediation steps.
Want the full picture, not just SSL?
SSL/TLS is one part of a domain's security posture. Our full website security scanner also checks DNS records and HTTP security headers in the same scan, and rolls every category into the overall security score so you can see where certificate issues rank against everything else.
See the full website security scanner