generated: '2026-08-26' method: probed source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts hosts: - host: www.nirmidas.com https: true tls_cert_error: '[SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: certificate has expired (_ssl.c:1082)' hsts: null tls_certificate: subject: CN=www.nirmidas.com issuer: 'C=CN, O=WoTrus CA Limited, CN=WoTrus DV Server CA' not_before: '2025-05-20' not_after: '2026-06-20' expired: true days_expired_at_probe: 67 http_to_https_redirect: 301 domains: - domain: nirmidas.com dnssec: false caa: [] spf: true dmarc: false notes: >- MATERIAL FINDING — the public website of Nirmidas Biotech cannot be reached by a standards-compliant HTTPS client. The leaf certificate served on www.nirmidas.com and nirmidas.com expired on 2026-06-20 and was still being served on 2026-08-26, so every browser and every automated client presents or raises a certificate error before any content is delivered. Every probe recorded in this repository therefore had to disable certificate verification. Compounding it, the issuing CA is WoTrus CA Limited (the successor of WoSign), whose roots are distrusted by the major browser trust stores — so even a freshly reissued certificate from the same chain would not validate. The hosting is Alibaba/Wanwang (www.nirmidas.com resolves via wh-au3su8zmnldkkubdddb.my3w.com to 198.11.174.219). No HSTS header is served, DNSSEC is not enabled, no CAA records are published, and there is no DMARC record; an SPF record is present.