SSL certificate tracking

SSL certificate expiry tracking and reminders for your team

Lapsewise tracks SSL certificate expiry dates across your domains and sends reminders at 60, 30, 7 and 0 days before each cert expires. When you add a domain record, Lapsewise can look up the current expiry directly from the live TLS certificate so you do not need to find and copy the date manually. After that, the dates are yours to manage and the reminders fire on schedule.

Free plan available. No credit card required.

Lapsewise · Northwind Logistics · Table

SSL certificates

6 records
14
Certificates
2
Expiring in 14 days
0
Expired
HostIssuerStatus
api.northwindlogistics.comLet's Encrypt5d
portal.northwindlogistics.comDigiCert12d
www.northwindlogistics.comCloudflare46d
*.nwlogistics.ioSectigo85d
mail.northwindlogistics.comGlobalSign127d
vpn.northwindlogistics.comInternal CA180d
SSL certificates by host with issuer and days left. The Slack alert fires before the browser warning does.

Why a spreadsheet is not enough

An expired SSL certificate does not just break HTTPS. It triggers full-page browser security warnings, kills checkout flows, tanks organic traffic overnight and signals to visitors that the site is unsafe. The damage happens in minutes. Discovery usually comes from a user complaint.

DevOps and IT teams often rely on a cron job that pings a domain, a monitoring service alert that gets noise-cancelled, or a spreadsheet with dates that nobody updates. When an engineer leaves or a domain migrates, the coverage disappears with them.

Lapsewise adds what monitoring tools leave out: a named record per domain with the renewal cost, the cert file attached, the owner assigned, and structured multi-stage reminders that reach the right person weeks before the expiry date, not after it.

Everything in one place

Expiry lookup when you add a domain

When adding a domain record, paste the domain name and Lapsewise performs a TLS handshake to read the current expiry date from the live certificate. Accept it with one click or edit it before saving. Useful when bringing many domains into the system at once.

Reminders at 60, 30, 7 and 0 days

Once the expiry date is set, Lapsewise schedules all four reminder touchpoints automatically. Reminders fire at 08:00 in each recipient's local timezone, with the domain name and days remaining in the notification.

Multi-domain tracking

Track every domain your team manages in one place: production sites, staging environments, client sites, CDN endpoints. Sort the list by next expiry to see what needs attention first.

Document storage for certificate files

Attach the certificate file, CSR or renewal confirmation to each domain record. Useful for internally-issued certificates, wildcard certs that need manual renewal and compliance audits that require proof.

Team assignment and ownership

Assign each domain to the DevOps engineer, IT admin or web developer who owns its renewal. They get the reminder; the noise does not go to everyone.

Cost tracking for paid certificates

Record the annual cost of commercial or wildcard certificates alongside the domain record. See your upcoming cert renewal spend by month and avoid surprise invoices.

Powered by the Lapsewise renewal engine

The same engine that tracks certifications, contracts and grants.

One runway of every date

See what is coming up across every record, sorted by urgency, on a single calm dashboard.

Reminders before it lapses

Email, SMS and Slack reminders fire in each person's own timezone, days before the deadline.

Documents attached

Drop the PDF onto the record. The file lives in private per-workspace storage, ready when you need to prove it.

AI reads the dates

Upload a document and AI extracts the dates, type and parties. You confirm, it fills the record.

Who it is for

DevOps and platform engineering teamsIT administratorsSaaS companies managing multiple environmentsEcommerce businesses where checkout SSL is criticalDigital agencies managing client websitesWeb developers with client hosting responsibilities

Frequently asked questions

What is SSL certificate expiry monitoring?

SSL certificate expiry monitoring is the practice of tracking when TLS/SSL certificates are due to expire and alerting the responsible team before they do. An expired certificate causes browsers to show a security warning page that blocks users from reaching the site. Lapsewise tracks expiry dates across all your domains, fetches dates from the live certificate when you add a domain record, and sends structured reminders before any cert lapses.

How often do SSL certificates expire?

Let's Encrypt certificates expire every 90 days, which is why auto-renewal via Certbot or ACME is standard for those. Commercial, extended validation and wildcard certificates from paid CAs typically expire after one year. The 90-day cycle is short enough that a failed auto-renewal goes unnoticed for weeks before causing an outage, which is why external tracking matters even when auto-renewal is configured.

What happens when an SSL certificate expires?

Every major browser shows a full-screen security warning that prevents users from reaching the site unless they manually click through a series of override prompts. Search engines may de-index pages. Checkout and payment flows break immediately. API clients receiving certificate errors stop connecting. The impact is immediate and broad, which is why catching the expiry 30 or 60 days in advance matters.

How does the expiry lookup feature work?

When you add a domain record in Lapsewise, you can paste the domain name and trigger a lookup that performs a TLS handshake and reads the Not After field from the live certificate. This fills in the expiry date at the time you create the record, saving you from finding and copying it manually. After the record is saved, the date is user-managed. If the certificate is renewed and the expiry changes, update the record or delete and re-add it to trigger a fresh lookup.

How does Lapsewise differ from UptimeRobot or TrackSSL for SSL monitoring?

Dedicated monitoring tools like UptimeRobot and TrackSSL continuously poll your domains and alert you the moment a cert approaches expiry or actually expires. Lapsewise is complementary: it tracks the upcoming expiry date in a business record, sends structured multi-stage reminders weeks in advance to a named owner, stores the certificate file, and tracks the renewal cost. It is the organizational and reminder layer for teams who want more than an alert the day something breaks. Pair Lapsewise with a live monitoring tool if you also want continuous polling.

How much does it cost?

Lapsewise has a free plan for up to 5 records with email reminders included. The paid plan is flat per workspace: Pro at $29 per month (or $290 per year) for up to 20 users, unlimited records, CSV import, SMS, Slack notifications, AI document parsing and analytics. No per-user seat fees.

Never let it lapse

Lapsewise tracks SSL certificate expiry dates across your domains and sends reminders at 60, 30, 7 and 0 days before each cert expires. When you add a domain record, Lapsewise can look up the current expiry directly from the live TLS certificate so you do not need to find and copy the date manually. After that, the dates are yours to manage and the reminders fire on schedule.

Start tracking free

Essential storage keeps you signed in. Optional choices enable analytics or analytics plus Meta advertising and PromoteKit affiliate tracking. Nothing optional loads before your choice. Privacy Policy.