CertKit for automating SSL certs to Windows, JKS, and appliances
Details
- External ID
- 47690037
- Source
- HN
- Company
- —
- Product
- CertKit for automating SSL certs to Windows, JKS, and appliances
- Website domain
- certkit.io
- Launched
- April 8, 2026
- Cohort
- —
- Upvotes
- 7
- Upvotes percentile
- 0.38817480719794345
- Tags
- —
- Fetched at
- Sept. 7, 2026, 9:26 p.m.
- Updated at
- Sept. 7, 2026, 9:26 p.m.
Description
We’ve been managing web infrastructure for a long time. For most of that time, certificate management meant buying a cert, copying it to wherever it needed to go, and setting a calendar reminder. That works when certificates last a year. It stops working when lifetimes drop to 47 days.Certbot is the obvious answer but it doesn’t cover everything. It requires ACME on each server, which means each server needs to be internet-reachable or have DNS provider access. That rules out Windows servers, JKS keystores, and appliances that can’t run Certbot or speak ACME at all.CertKit handles ACME centrally. A source-available Go agent runs on each server and handles deployment, including Windows, JKS, and appliances via custom file destinations and post-deploy commands. Validation uses a delegated CNAME so we never need your DNS provider credentials.We just wrapped up our beta and launched today. Happy to answer any questions.https://www.certkit.io/
Enrichment
- Theme
- developer infrastructure and monitoring utilities
- Vertical
- Security
- Function
- Workflow automation
- Audience
- B2B
- AI stance
- Not AI
- Project type
- Commercial product
- Normalized one-liner
- ssl certificate automation across platforms
- Manually corrected
- False
Could you build this?
No Automating enterprise certificate deployments across Windows OS internals, legacy Java Keystores, RDP, and proprietary network appliances requires deep systems administration, PKI domain knowledge, and specialized host agents.
What it would actually take: Building CertKit requires deploying cross-platform native agents (Go/C#) capable of interfacing with the Windows CryptoAPI/Certificate Store, Active Directory, IIS, and managing JKS/PKCS12 keystores via JVM internals or OpenSSL. The backend needs an ACME client/server infrastructure integrated with public CAs (Let's Encrypt, DigiCert) and private PKI (Vault, AD CS), along with hardened key management (HSMs or secure enterprise key vaults) and remote deployment primitives over WinRM and SSH.
Discussion
No comments on this launch.
Competitors
Other products that read as similar to this one — 45 launches clear the similarity bar, closest 8 shown.
Attention rank: #22 of 46 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).
Launched 158 days after the earliest competitor.
- SSL Certificate Checker · ph · 2026-09-24 · 2 upvotes · similarity 0.45
- I rewrote my 2012 self-signed cert generator in Go · hn · 2026-04-02 · 9 upvotes · similarity 0.45
- X509-certificate-exporter · hn · 2026-05-12 · 8 upvotes · similarity 0.45
- Govigie · ph · 2026-09-10 · 1 upvotes · similarity 0.43
- TLS Certificate Management and PKI · hn · 2026-05-22 · 10 upvotes · similarity 0.42
- CertAvert · ph · 2026-09-29 · 1 upvotes · similarity 0.42
- CredPulse · ph · 2026-09-14 · 1 upvotes · similarity 0.42
- Lock In Cert · ph · 2026-09-11 · 2 upvotes · similarity 0.41
Other launches for this product
- No other launches for this product.
Same idea, different domain
Nobody's really built a workflow automation tool for Real estate yet.