search

amazon.com

Every SSL/TLS certificate ever issued for this name, indexed from public CT logs.

csv export pro
total records
2,001
active · on this page
19
expired · on this page
1
unique issuers · on this page
5
issuers on this pageAmazon11cPanel5SwissSign AG2ZeroSSL1DigiCert1
domainstatus
beta.bpp.compass.amazon.comcrt.sh
Amazon
expires in 3mo
alpha.bpp.compass.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 3mo
api.social.amazon.comcrt.sh
ZeroSSL
expires in 3mo
tmga.aea.amazon.comcrt.sh
Amazon
expires in 6mo
lawrence.amazon.comcrt.sh
cPanel
expires in 6mo
rouled-us-east-1.beta.signer.console-api.aws-dev.amazon.comcrt.sh
cPanel
expires in 6mo
alumni.docgen-preprod.mydocs-uat.amazon.comcrt.sh
cPanel
expires in 6mo
admiral-fe-internal-pdx.pdx.proxy.amazon.comcrt.sh
Amazon
expired 11mo ago
amazon.comcrt.sh
DigiCert
expires in 6mo
aea-console-canary.aea.amazon.comcrt.sh
cPanel
expires in 5mo
aea-console-canary.aea.amazon.comcrt.sh
cPanel
expires in 5mo
aea-console-canary.aea.amazon.comcrt.sh
Amazon
expires in 5mo
device-metrics-us.amazon.comcrt.sh
SwissSign AG
expires in 8mo
firs-ta-g7g.amazon.comcrt.sh
SwissSign AG
expires in 8mo
Pipe results into your recon pipeline
# Python
$ pip install ct-radar
$ ct-radar amazon.com | httpx -silent
# Go
$ go install github.com/imfht/ct-radar-cli/cli@latest
$ ct-radar amazon.com | nuclei
Free tier: 100 searches/day · Pro $29/mo for 10,000/day

Related domains under .com

About certificate history for amazon.com

This page lists every X.509 (SSL/TLS) certificate ever issued for amazon.com and its subdomains, as recorded in public Certificate Transparency (CT) logs. CT logs are an immutable, append-only record of every certificate issued by participating Certificate Authorities (CAs), as required by the major browsers since 2018.

Subdomain enumeration via CT logs is one of the highest-signal techniques in reconnaissance — every time a TLS certificate is issued, all Subject Alternative Names (SANs) on that certificate become public. Internal and forgotten subdomains regularly show up here days after they're set up.

To monitor amazon.com for newly-issued certificates in real-time (useful for detecting unauthorized issuance, phishing variants, or shadow IT) add it to your watchlist (Pro plan).