Domain Health Report
Shows that public-facing domains are actively checked for SSL certificate, domain-registration, DNS, and email-authentication evidence, with issues surfaced for review.
On demand
Sample reports
Static, fictional examples of every real CertPilot report format. Review the current public sample PDFs, source boundaries, and report structure before adding your own data. Nothing here is a live customer account.
Featured report
The format that best represents the platform: public checks and customer-maintained registers brought into one dated cross-module summary.
Governance Evidence Pack
External footprint — SSL, DNS, RDAP
Email authentication coverage
Renewal risk register
Access review completion
Vendor status context
Supporting formats
Two focused formats lead as ReportCards; the other three become compact rows so the gallery has hierarchy rather than six identical blocks.
Shows that public-facing domains are actively checked for SSL certificate, domain-registration, DNS, and email-authentication evidence, with issues surfaced for review.
On demand
Shows upcoming and overdue renewal risk alongside owners, dates, notice windows, open decisions, and incomplete records that need follow-up.
On demand
Shows a dated monthly summary of domain health, email-authentication evidence, renewal risk, DNS changes, and access-review counts.
Generated on demand for a monthly period
Who uses it
Agencies use it as a monthly client deliverable; IT teams and MSPs use it for concise management updates.
What's inside
Shows a short governance snapshot of recent domain, certificate, DNS, renewal, and access-review signals that need review.
On-demand only — no automated weekly delivery
Who uses it
IT teams use it during a weekly review ritual; MSPs can generate it for an operational client check.
What's inside
Shows a dated register of access records, review states, reviewer context, and the follow-up still required at sign-off.
On demand after review sign-off
Who uses it
IT leads use it for audit-preparation or insurance conversations and for quarterly access-review evidence.
What's inside
Where reports come from
Reports are assembled from public-signal results and customer-maintained records. The source category and scope remain visible so the reader can understand the basis and limits.
SSL, DNS, email authentication, RDAP, and official vendor status.
→ Domain Health · public-signal sections
Renewals, people, assets, systems, access reviews, decisions, owners, and sign-off.
→ Renewal Risk · access-review sections
Both inputs brought into a readable report with scope and limits stated.
→ Governance Evidence Pack
Domain Health workflow today
SSL status and expiry, domain/RDAP registration expiry where available, DNS records, and an overall status per domain.
The latest public DNS snapshot plus what changed between checks. This is read-only evidence, not DNS restore.
Customer-entered owner, purpose, lifecycle status, renewal decision, and last-reviewed date beside the automated checks.
Customer-entered management method, automation status, and readiness notes. CertPilot does not issue or renew certificates.
A customer-entered register of systems that send mail from a domain. CertPilot does not scan mailboxes or send email.
A dated summary for management or client review. It is operational evidence, not certification or an audit guarantee.
How reports are generated
CertPilot checks monitored domains daily. SSL evidence comes from a live TLS handshake; domain-registration expiry comes from RDAP; DNS and email-authentication evidence comes from public DNS records. Renewal, people, assets, systems, and access-review evidence comes from registers your team enters or imports.
Each report uses the inputs relevant to that format. Generate the next dated snapshot from the dashboard when you need it; there is no automated Weekly Governance delivery or connector-enriched report data.
What a report is not
A report is
A report is not
Demo reports use fictional data. Live reports document operational evidence; they do not certify compliance or replace an auditor's judgement.
Related reading
Review the module and operating guides behind the public checks, maintained context, and report boundaries.
See how public DNS, SSL, domain-expiry, governance, SSL-readiness, and sending-source context fit together.
Read moreUnderstand the report set and the boundaries of generated evidence PDFs.
Read moreLearn what IT teams should track before shorter certificate lifetimes become operationally painful.
Read moreLearn what to record for every company domain beyond simple inventory.
Read moreLearn how snapshots and before/after changes support domain portfolio review.
Read moreFrom sample to your own
Add the domains and maintained records each report needs, review the current evidence, and generate the relevant format on demand.