ccheck
« Back to VersTracker
Description:
Check X509 certificate expiration from the command-line, with TAP output
Type: Formula  |  Latest Version: 1.0.1@0  |  Tracked Since: Dec 17, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: ssl tls certificate security cli monitoring
Install: brew install ccheck
About:
ccheck is a command-line utility designed to inspect and validate X.509 SSL/TLS certificates. It connects to specified hosts to retrieve certificate details, checking expiration dates and validity periods. The tool is particularly useful for automation, offering output formatted for easy integration with monitoring systems and CI/CD pipelines.
Key Features:
  • Checks certificate expiration and validity dates
  • Outputs results in TAP (Test Anything Protocol) format
  • Supports batch processing of multiple hosts
  • Handles both TLS and STARTTLS connections
Use Cases:
  • Automated monitoring of SSL certificate expiration for infrastructure
  • Integration into CI/CD pipelines to enforce certificate validity
  • Quick command-line verification of certificate details for system administrators
Alternatives:
  • openssl – More powerful and versatile but requires complex command-line arguments for simple checks; ccheck provides a simpler interface for expiration monitoring.
  • nmap – A comprehensive network scanner that can check certificates, but is heavier and less focused on simple expiration reporting than ccheck.
License: GPL-2.0-or-later
Bottles available for: arm64_tahoe, arm64_sequoia, arm64_sonoma, arm64_ventura, arm64_monterey, arm64_big_sur, sonoma, ventura, monterey, big_sur, catalina, arm64_linux, x86_64_linux
Version History
Detected Version Rev Change Commit
Oct 10, 2025 3:01am 0 VERSION_BUMP ed492176
Sep 13, 2025 6:48am 0 VERSION_BUMP 30939389