Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

CertKit for automating SSL certs to Windows, JKS, and appliances

Details

External ID
47690037
Source
HN
Company
—
Product
CertKit for automating SSL certs to Windows, JKS, and appliances
Website domain
certkit.io
Launched
April 8, 2026
Cohort
—
Upvotes
7
Upvotes percentile
0.38817480719794345
Tags
—
Fetched at
Sept. 7, 2026, 9:26 p.m.
Updated at
Sept. 7, 2026, 9:26 p.m.

Description

We’ve been managing web infrastructure for a long time. For most of that time, certificate management meant buying a cert, copying it to wherever it needed to go, and setting a calendar reminder. That works when certificates last a year. It stops working when lifetimes drop to 47 days.Certbot is the obvious answer but it doesn’t cover everything. It requires ACME on each server, which means each server needs to be internet-reachable or have DNS provider access. That rules out Windows servers, JKS keystores, and appliances that can’t run Certbot or speak ACME at all.CertKit handles ACME centrally. A source-available Go agent runs on each server and handles deployment, including Windows, JKS, and appliances via custom file destinations and post-deploy commands. Validation uses a delegated CNAME so we never need your DNS provider credentials.We just wrapped up our beta and launched today. Happy to answer any questions.https://www.certkit.io/

Enrichment

Theme
developer infrastructure and monitoring utilities
Vertical
Security
Function
Workflow automation
Audience
B2B
AI stance
Not AI
Project type
Commercial product
Normalized one-liner
ssl certificate automation across platforms
Manually corrected
False

Could you build this?

No Automating enterprise certificate deployments across Windows OS internals, legacy Java Keystores, RDP, and proprietary network appliances requires deep systems administration, PKI domain knowledge, and specialized host agents.

What it would actually take: Building CertKit requires deploying cross-platform native agents (Go/C#) capable of interfacing with the Windows CryptoAPI/Certificate Store, Active Directory, IIS, and managing JKS/PKCS12 keystores via JVM internals or OpenSSL. The backend needs an ACME client/server infrastructure integrated with public CAs (Let's Encrypt, DigiCert) and private PKI (Vault, AD CS), along with hardened key management (HSMs or secure enterprise key vaults) and remote deployment primitives over WinRM and SSH.

Discussion

No comments on this launch.

Competitors

Other products that read as similar to this one — 45 launches clear the similarity bar, closest 8 shown.

Attention rank: #22 of 46 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 158 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a workflow automation tool for Real estate yet.