Certificate Listing gives you a complete inventory of every TLS/SSL certificate discovered across your attack surface. Certificates are tracked from first discovery through to expiry, giving you visibility into which certificates are valid, which have already expired, and which are approaching their expiry date.
All certificates are associated with their underlying asset, and each entry records the issuing organization, country, first discovery date, last seen date, expiry date, and current status. Certificate Listing allows you to:
View all TLS/SSL certificates discovered across your verified assets in one place.
Identify expired certificates and those approaching their expiry date before they cause issues.
Filter by certificate name, status, organization, country, and more.
Navigate directly from a certificate to its associated asset for full context.
Certificate Listing can be accessed via the left sidebar of the watchTowr Platform.
Summary Counters
At the top of the page, summary counters give you an at-a-glance overview of your certificate landscape.
The counters show:
All Certificates: The total number of TLS/SSL certificates discovered across your attack surface.
Expired: Certificates that have already passed their expiry date.
Expiring: Certificates that are approaching their expiry date and will expire soon.
Click a counter to filter the table to that certificate group.
Certificate Table
Each row in the table represents a single TLS/SSL certificate.
The tables shows the following information for each certificate:
Certificate Name: The common name (CN) of the certificate, typically the domain it was issued for. Click to view certificate details.
Associated Asset: The asset the certificate was discovered on. Click the asset name to open its full detail page.
Organisation: The organisation listed in the certificate's subject.
Country: The country listed in the certificate's subject.
Discovered: The date the certificate was first observed by watchTowr.
Last Seen: The most recent date the certificate was observed.
Expiration: The date the certificate expires.
Status: The current status of the certificate: Valid, Expired, or Expiring Soon.
Clicking a certificate name opens a modal box with detailed information about the certificate on the Overview tab, and alternative certificate names on the Subject Alt Names tab. Certificate data can be copied with the Copy icon.
Use the pagination controls at the bottom of the page to navigate between pages or change the number of rows shown.
Filters
Click the filter icon to open the filter panel. Filters can be combined to narrow the certificate list. Available filters include:
Certificate name: Search by the certificate's common name or domain.
Status: Filter by Valid, Expired, or Expiring Soon.
Organization: Filter by the organization listed in the certificate.
Country: Filter by country.
Business Units: Scope the view to certificates belonging to assets in a specific business unit.
Only include assets marked as favorites: Limit results to assets you have starred as favourites.
Discovered on: Filter by the date range in which certificates were first discovered.
Click Apply to apply your selections, or Reset to clear all active filters.
If you need assistance, don't hesitate to contact the watchTowr team. Our knowledgeable team is ready to help you navigate the watchTowr Platform and address any questions or concerns.





