Uses
- Auditing your own attack surface: forgotten staging, test or admin hosts.
- Finding subdomains to include in an SEO or migration audit.
- Checking which certificates have been issued for your brand.
Subdomains without HTTPS certificates will not appear.
Frequently asked questions
Is this legal?
Yes — CT logs are public by design.
Why are some subdomains old?
Logs keep history; a listed name may no longer exist.
Where does the data come from?
crt.sh, with Cert Spotter as a fallback, cached for 24 hours.

