Updated 2 seconds ago

Segmented Intelligence

Is letsencrypt.org secure and certificate-valid right now?

REGISTERED

A TLS certificate expiry audit verifies the cryptographic trust posture of a domain. By examining validity windows, protocol support, and issuer trust-chains, operators can preempt renewal liabilities and prevent secure traffic disruption.

TLS Verdict

SECURE

Valid Until

Aug 05, 2026

Days Remaining

62

Issuer

Let's Encrypt

Protocol
TLSv1.3
Valid from
May 07, 2026
Subject
letsencrypt.org
Probe errorNone

Registration snapshot

Registrar
Cloudflare, Inc.
Registrar IANA
1910
Creation date
Jul 07, 2014
Expiry date
Jul 07, 2027
Domain age
11 Years, 10 Months
Days until expiry
398
Updated date
Nov 03, 2020

Marketplace Spotlight

Premium Domains. Real Digital Assets.

Elevate Your Brand with a Premium Domain. Explore exclusive digital real estate at globNIC.com.

Explore globNIC Marketplace

Curated aftermarket inventory at globNIC.com

A records + geolocation

  • 98.84.224.111

    Geolocation not available for this IP.

  • 18.208.88.157

    Geolocation not available for this IP.

AAAA records

  • 2600:1f18:16e:df01::258
  • 2600:1f18:16e:df01::259

Nameserver host IPs

  • owen.ns.cloudflare.com

    108.162.193.219, 172.64.33.219, 173.245.59.219, 2606:4700:58::adf5:3bdb, 2a06:98c1:50::ac40:21db, 2803:f800:50::6ca2:c1db

  • vera.ns.cloudflare.com

    173.245.58.147, 108.162.192.147, 172.64.32.147, 2a06:98c1:50::ac40:2093, 2606:4700:50::adf5:3a93, 2803:f800:50::6ca2:c093

MX records

MX routing priorities for letsencrypt.org
PriorityExchange
1
aspmx.l.google.com
5
alt1.aspmx.l.google.com
5
alt2.aspmx.l.google.com
10
aspmx3.googlemail.com
10
aspmx2.googlemail.com

TXT records

  • pardot1011011=d160caff32c4415bb46bb82d8c50e5bea7ea1a74f5a149cb96bd952467266044
  • sending_domain1011011=f98c68e7636a708a1987c7b9da300d64a354041fa41ea2039fbb02bc18c4ed0f
  • v=spf1 include:_spf.google.com ip4:23.178.112.0/24 ip4:66.133.109.36 ip4:64.78.152.132 include:mail.zendesk.com include:_spf.intacct.com -all

Focused intelligence summary

The domain's active TLS certificate and its significant. Use registrar, DNS, and expiry signals together before making a move. Treat unresolved WHOIS or infrastructure ambiguity as a decision risk until verified.

Contact details (usually redacted)

Expand redacted contact details

Included for technical completeness. Most fields are intentionally redacted by privacy and registry policy.

Registrant contact

Name: Redacted due to Privacy/GDPR

Organization: Redacted due to Privacy/GDPR

Email: Redacted due to Privacy/GDPR

Phone: Redacted due to Privacy/GDPR

Admin contact

Name: Redacted due to Privacy/GDPR

Organization: Redacted due to Privacy/GDPR

Email: Redacted due to Privacy/GDPR

Phone: Redacted due to Privacy/GDPR

Technical contact

Name: Redacted due to Privacy/GDPR

Organization: Redacted due to Privacy/GDPR

Email: Redacted due to Privacy/GDPR

Phone: Redacted due to Privacy/GDPR

Developer quick actions

Same data via API

curl -sS "https://whoislogic.com/api/tools/rdap?domain=letsencrypt.org"

API rate limit

30 requests per 1 hour per client IP (rolling window).

30 req / 1 hour / IP · Successful responses include X-RateLimit-Limit, X-RateLimit-Remaining, and X-RateLimit-Policy (RFC draft style: limit;w=seconds). HTTP 429 sets Retry-After when the gate trips.

Developer toolkit

Export machine-readable data, call the public RDAP JSON API, or inspect raw payloads.

Download the same snapshot shown on this page as JSON (with metadata) or a single-row CSV for spreadsheets and pipelines.

RDAP status signals

3 signals
Client Delete Prohibited
Client Transfer Prohibited
Client Update Prohibited