Skip to content

Domain certificates and subdomains

Public certificate transparency search for issued certificates and names they cover.

Search certificates

Search certificates

Find issued certificates and the domain names they reveal on crt.sh. Expired certificates are excluded by default; results are limited to the newest matching certificates.

Your information

Domain to search, for example example.com.

Maximum number of certificates to return, for example 100.

Include expired certificates, for example true.

1 credit per run

Example results

Subdomains
  • *.example.com
  • example.com
  • www.example.com
Certificates
Certificates
LinkCrt Sh IDValid FromValid UntilNames CoveredSerial NumberIssuer Organization
29557945233
2026-09-24
2026-12-21
*.example.com, example.com
2caeeaf0743459d7e5f82a75123c58f3
Sectigo Limited
28361996564
2026-07-29
2026-10-27
*.example.com, example.com
0624d0ab311558780b7d5213b9631831
SSL Corporation
28361996505
2026-07-29
2026-10-27
*.example.com, example.com
62546d11b12882adbce18f65f9372286
SSL Corporation
28361617869
2026-07-29
2026-10-27
*.example.com, example.com
33f0f429d5622a91a1c3d5b6729e11e5
SSL Corporation
28361618258
2026-07-29
2026-10-27
*.example.com, example.com
49c9a73c64f9bda07dd9d469432b505f
SSL Corporation
22853418213
2025-12-02
2026-12-02
example.com, www.example.com
531e16f0f28235b65cc7cd35a5f0710b
Sectigo Limited
22648264889
2025-11-21
2026-11-21
example.com, www.example.com
0f8f7abde735d78baa0bd4053f39021c
Sectigo Limited
22625582522
2025-11-20
2026-11-20
example.com
009de10580fa26441939f38af4afb1cb40
Sectigo Limited
8506962125
2023-01-27
2033-01-24
example.com
1ac1e693c87d36563a92ca145c87bbc26fd49f4c
—
Example data · Run in Studio for fresh results.

Choose an action

About crt.sh

crt.sh’s Search certificates method returns matching certificates and DNS names for a required domain.

Search certificates returns newest certificates first; optionally include expired certificates or set a maximum result count.

Built by Fous from crt.sh and checked automatically; it last passed a check on Sep 29, 2026. Fous is not affiliated with crt.sh.

Actions

Search certificates

1 credit per run

Find issued certificates and the domain names they reveal on crt.sh. Expired certificates are excluded by default; results are limited to the newest matching certificates.

What you provide

FieldTypeRequiredDescription
DomaindomainTextRequiredDomain to search, for example example.com.Example: example.com
Max Resultsmax_resultsNumberOptionalMaximum number of certificates to return, for example 100.Example: 100
Include Expiredinclude_expiredYes or noOptionalInclude expired certificates, for example true.Example: Yes

What you get

FieldTypeDescription
SubdomainssubdomainsListUnique matching DNS names, sorted A-Z, including wildcards and the root domain when present.
CertificatescertificatesListMatching unique certificates, newest first.
Linkcertificates[].linkTextCertificate page on crt.sh.Example: https://crt.sh/?id=29557945233
Crt Sh IDcertificates[].crt_sh_idNumberExample: 29557945233
Valid Fromcertificates[].valid_fromDateExample: 2026-09-24
Valid Untilcertificates[].valid_untilDateExample: 2026-12-21
Names Coveredcertificates[].names_coveredListDNS names listed on the certificate.
Serial Numbercertificates[].serial_numberTextExample: 2caeeaf0743459d7e5f82a75123c58f3
Issuer Organizationcertificates[].issuer_organizationTextOrganization that issued the certificate.Example: Sectigo Limited

Example result

For Domain: example.com

JSON
{
  "subdomains": [
    "*.example.com",
    "example.com",
    "www.example.com"
  ],
  "certificates": [
    {
      "link": "https://crt.sh/?id=29557945233",
      "crt_sh_id": 29557945233,
      "valid_from": "2026-09-24",
      "valid_until": "2026-12-21",
      "names_covered": [
        "*.example.com",
        "example.com"
      ],
      "serial_number": "2caeeaf0743459d7e5f82a75123c58f3",
      "issuer_organization": "Sectigo Limited"
    },
    {
      "link": "https://crt.sh/?id=28361996564",
      "crt_sh_id": 28361996564,
      "valid_from": "2026-07-29",
      "valid_until": "2026-10-27",
      "names_covered": [
        "*.example.com",
        "example.com"
      ],
      "serial_number": "0624d0ab311558780b7d5213b9631831",
      "issuer_organization": "SSL Corporation"
    },
    {
      "link": "https://crt.sh/?id=28361996505",
      "crt_sh_id": 28361996505,
      "valid_from": "2026-07-29",
      "valid_until": "2026-10-27",
      "names_covered": [
        "*.example.com",
        "example.com"
      ],
      "serial_number": "62546d11b12882adbce18f65f9372286",
      "issuer_organization": "SSL Corporation"
    }
  ]
}

For developers

Run this workflow from your own code. In Studio, turn on Developer mode and create an API key.

cURL
# First set your key: export FOUS_API_KEY='YOUR_FOUS_API_KEY'
: "${FOUS_API_KEY:?Set FOUS_API_KEY before running this example}"

curl 'https://api.fous.com/v1/query' \
  --fail-with-body --silent --show-error --max-time 120 \
  -H "Authorization: Bearer $FOUS_API_KEY" \
  -H 'Content-Type: application/json' \
  --data-raw '{
  "api": "@crt-sh",
  "visibility": "public",
  "operation": "search_certificates",
  "version": 1,
  "input": {
    "domain": "example.com",
    "max_results": 100,
    "include_expired": true
  },
  "response": {
    "format": "json"
  }
}'

What you can do with it

  • Review certificates issued for a domain
  • Identify subdomains revealed by certificates
  • Check certificate validity dates
  • Compare certificate issuer organizations
  • Review names covered by certificates

Questions

Is Fous affiliated with crt.sh?

No. Fous is not affiliated with crt.sh. This workflow reads the public crt.sh website and returns its data.

How much does it cost?

Each run costs 1 credit. With pay-as-you-go, a credit costs 1¢; monthly plans cost less per credit.

Do I need a crt.sh account?

No. You only need a Fous account.

How current is the data?

Fous gets the data from crt.sh when you run it; repeating the same request within a day may return the saved result. Fous checks this workflow automatically; it last passed a check on Sep 29, 2026.

What certificates were issued for a domain?

Search certificates returns matching certificates for the required domain, newest first.

Which subdomains do certificates reveal?

Search certificates returns unique matching DNS names, including wildcards and the root domain when present.

All Security workflowsBrowse all workflows