SnapshotThis is a frozen record of the check as it ran — the live certificate may have changed since. Re-check this domain now

Trusted nowhere — the certificate has expired

expired.badssl.com · snapshot taken Aug 29, 2026, 03:25 PM · chain of 3 · 78 trust stores

Re-check
ExpiredAt the time of this check, the certificate was already expired (Apr 12 23:59:59 2015 GMT). Every platform rejects expired certificates.

Coverage

share of version-pinned trust stores
78
Trust stores checked
0
Trusted
78
Rejected
Not verifiable
iOS
0 / 21
Android
0 / 25
webOS
0 / 28
Tizen / Fire OS
0 / 4

Why it fails — 2 root causes behind 78 rejections

grouped, not 78 rows of openssl output
Root cause 1

The certificate has expired

Every trust store rejects expired certificates, regardless of issuer. The leaf's validity ended Apr 12 23:59:59 2015 GMT — browsers show a full-page warning before any content loads.

77 platforms
Android 10Android 11Android 12Android 13Android 13 (eng build)Android 14Android 15Android 16Android 2.3.1Android 3.2.4Android 4.0.1Android 4.0.2Android 4.0.3Android 4.0.4Android 4.1.1Android 4.2Android 4.3Android 4.4Android 5.0.0Android 5.0.2Android 5.1Android 6.0Android 7.1Android 8.1Android 9Fire OS Signage StickiOS 10iOS 11iOS 12iOS 12.1.3iOS 13iOS 13.4iOS 14iOS 14.2iOS 15iOS 15.1iOS 16iOS 16.5iOS 17iOS 17.4iOS 18iOS 26iOS 5iOS 6iOS 7iOS 8iOS 9Tizen S · 1130.2Tizen T · 2140.2Tizen T · 2170.0webOS 3.0 · 55EF5C/55EV5CwebOS 3.0 · 55TC3CDwebOS 3.0 · 65EE5PCwebOS 3.0 · 65EV5CwebOS 3.0 · 75XF3ESwebOS 3.0 · EH5CwebOS 3.0 · EJ5CwebOS 3.0 · SM3C/SM5C/SM5KC/UH5C/75XS2CwebOS 3.0 · SM5C/SM5KC/UH5C/LS73C/LS73D/LS75CwebOS 3.0 · XEB3E/XF1EwebOS 3.0 · XS2C/XF3C/XE3E/XE3CwebOS 3.0 · XS2DwebOS 3.0 · XS4F/XF3E/XS2EwebOS 3.2 · 55EF5EwebOS 3.2 · 55EG5CEwebOS 3.2 · 55EJ5EwebOS 3.2 · 55SVH7EwebOS 3.2 · 55VX1DwebOS 3.2 · 65EV5E/EJ5EwebOS 3.2 · SM5D/EJ5D/EG5CDwebOS 3.2 · SM5D/SM5KDwebOS 3.2 · TA3EwebOS 3.2 · VL5D/VL5PFwebOS 3.2 · wp320webOS 4.0 · EF5G/EF5K/EJ5G/EJ5K/EW5G/EW5PG/EW5TF/EW5TKwebOS 4.0 · SH7E/SM5KE/UH5E/WP400webOS 4.0 · wp400

Who is affected

Everyone, immediately. Expiry is the most common certificate incident and it is always total.

Fix

Renew the certificate now, then automate renewal (ACME / cert-manager / your CA's auto-renew) so it can't lapse again.

Root cause 2

"AddTrust External CA Root" is not in these platforms' trust stores

The chain reaches AddTrust External CA Root, but these platform versions don't include it — verification stops with no path to a trusted root ("unable to get local issuer certificate" / "self-signed certificate in chain"). Usually the anchor root is newer than the platform, or the server is not sending a required intermediate.

1 platform
webOS 3.2 · 86TR3D/TC3D/TR3E

Who is affected

Devices on webOS 3.2 · 86TR3D/TC3D/TR3E.

Fix

First confirm the server sends the full intermediate chain. If it does and these versions still matter, re-issue with a CA whose root has shipped since the oldest version you need to support.

The certificate

as captured at check time
Subject
OU=Domain Control Validated, OU=PositiveSSL Wildcard, CN=*.badssl.com
Issuer
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Domain Validation Secure Server CA
Serial
4a:e7:95:49:fa:9a:be:3f:10:0f:17:a4:78:e1:69:09
Valid from
Apr 9 00:00:00 2015 GMT
Valid until
Apr 12 23:59:59 2015 GMTexpired
Signature
sha256WithRSAEncryption · rsaEncryption 2048 bits
SHA-256 fingerprint
ba:10:5c:e0:2b:ac:76:88:8e:ce:e4:7c:d4:eb:79:41:65:3e:9a:c9:93:b6:1b:2e:b3:dc:c8:20:14:d2:1b:4f
Subject alternative names
DNS:*.badssl.comDNS:badssl.com
End entity
*.badssl.com
Apr 9 00:00:00 2015 GMT → Apr 12 23:59:59 2015 GMT · rsaEncryption 2048 bits
Valid
Intermediate #1
COMODO RSA Domain Validation Secure Server CA
Feb 12 00:00:00 2014 GMT → Feb 11 23:59:59 2029 GMT · rsaEncryption 2048 bits
Served
Chain top
COMODO RSA Certification Authority
May 30 10:48:38 2000 GMT → May 30 10:48:38 2020 GMT · rsaEncryption 4096 bits
Served

Every store, one by one

iOS 10Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 11Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 12Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 12.1.3Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 13Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 13.4Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 14Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 14.2Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 15Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 15.1Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 16Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 16.5Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 17Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 17.4Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 18Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 26Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
iOS 5Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
iOS 6Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
iOS 7Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
iOS 8Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
iOS 9Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 10Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 11Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 12Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 13Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 13 (eng build)Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 14Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 15Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 16Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 2.3.1Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 3.2.4Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.0.1Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.0.2Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.0.3Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.0.4Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.1.1Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.2Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.3Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 4.4Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 5.0.0Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 5.0.2Rejectedcertificate at depth 3 (intermediate #3): Certificate has expired — the cert's notAfter date has passed
Android 5.1Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 6.0Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 7.1Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 8.1Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed
Android 9Rejectedleaf certificate: Certificate has expired — the cert's notAfter date has passed

Trust stores rebuilt from vendor-published root lists: Apple (iOS 5–26), AOSP (Android 2.3–16), LG webOS, Samsung Tizen, Amazon Fire OS. Verification: OpenSSL chain build against each store, anchored only at that store's roots.