{"repo":"SSLMate/certspotter","free":true,"listed":false,"github":"https://github.com/SSLMate/certspotter","clone":"git clone https://github.com/SSLMate/certspotter.git","description":"Lightweight Certificate Transparency Log Monitor","language":"Go","stars":1166,"topics":["certificate-transparency","pki","x509","security","webpki"],"license":"MPL-2.0","category":"security-tools","readme_excerpt":"Cert Spotter - Certificate Transparency Monitor - Open Source Edition Cert Spotter is a Certificate Transparency log monitor from SSLMate that alerts you when an SSL/TLS certificate is issued for one of your domains. Cert Spotter is easier to use than other open source CT monitors, since it does not require a database. It's also more robust, since it uses a special certificate parser that ensures it won't miss certificates. Cert Spotter is available as a hosted service by SSLMate that also provides monitoring for expiring and incorrectly-installed certificates, Slack notifications, and a Web dashboard for tracking all of your certificates. Visit to sign up. You can use Cert Spotter to detect: Certificates issued to attackers who have compromised your DNS and are redirecting your visitors to their malicious site. Certificates issued to attackers who have taken over an abandoned sub-domain in order to serve malware under your name. Certificates issued to attackers who have compromised a certificate authority and want to impersonate your site. Certificates issued in violation of your corporate policy or outside of your centralized certificate procurement process. Quickstart The following instructions require you to have Go version 1.21 or higher installed. 1. Install the certspotter command using the go command: 2. Create a watch list file $HOME/.certspotter/watchlist containing the DNS names you want to monitor, one per line. To monitor an entire domain tree (including the doma","default_branch":null,"files":null,"tree":[],"storefront":"/r/SSLMate","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/SSLMate/certspotter/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}