acme.sh
acme.sh: A free, scriptable ACME client for cross-platform certificate issuance and renewal. Ranked #26 of 31 in Certificate Management Software by our editors (6.7/10); pricing: Free plan; best for scriptable, cross-platform ACME automation.
At a glance
- Editor score6.7 / 10
- PricingFree plan
- Best forScriptable, cross-platform ACME automation
- Free planYes
- Paid fromNone
- Facts checked20 Sep 2026

Where it wins
- Free open-source issuance, renewal, installation, and deployment workflows
- Supports DNS, webroot, standalone, Apache, and Nginx validation
- Works with SAN, wildcard, ECC, and RSA certificates across multiple CAs
Where it doesn't
- Requires self-managed systems and shell-based configuration
- Does not provide verified certificate discovery
- Does not provide centralized certificate inventory
Our verdict on acme.sh
acme.sh is an open-source ACME protocol client written in Unix shell for issuing, renewing, installing, and deploying SSL/TLS certificates on self-managed systems. It supports Windows, macOS, Linux, and self-hosted environments, making it a fit for teams that prefer scriptable certificate operations across different platforms. The project is officially maintained by ZeroSSL while retaining the acme.sh name, and it remains available as an actively maintained GitHub project.
Its strongest area is workflow coverage. acme.sh supports webroot, standalone, Apache, Nginx, DNS API, and DNS manual validation modes, along with SAN and wildcard certificates. It supports both ECC and RSA certificates, certificate revocation, Docker, and integrations with ZeroSSL, Let's Encrypt, SSL.com, Google Public CA, Actalis, and DNS providers. A recurring cron job can handle unattended renewal, while installation and service reload hooks support copying certificates and reloading services after deployment. These capabilities make it suitable for operators who want certificate automation that can be incorporated into existing scripts and service-management routines.
The trade-off is its operational model. acme.sh is designed for self-managed systems rather than centralized certificate discovery or inventory, so it fits teams that already manage certificate locations, validation methods, deployment hooks, and renewal jobs. Buyers seeking a focused ACME client with broad validation and deployment options should consider it. Teams that need verified discovery across environments or a centralized inventory should choose a certificate management product built around those functions instead.
acme.sh pricing
acme.sh fact sheet
| Free plan | Yes |
|---|---|
| Paid from | None |
| Certificate discovery | Not verified |
| Automatic renewal | Yes |
| Deployment automation | Yes |
| Revocation workflows | Yes |
| Certificate types | Tls |
| CA integrations | Yes |
| Deployment | Self-hosted |
| Platforms | Windows, macOS, Linux |
| Support | Docs |
| Built for | Solo, Small business, Mid-market, Enterprise (editorial estimate) |
| Integrations | 6 integrations: ZeroSSL, Let's Encrypt, SSL.com, Google Public CA, Actalis, DNS providers See all → |
| Pricing | Free plan |
| Website | github.com |
| Facts checked | 20 Sep 2026 |
acme.sh integrations
acme.sh lists 6 integrations on its own site.
- ZeroSSL
- Let's Encrypt
- SSL.com
- Google Public CA
- Actalis
- DNS providers
See all acme.sh integrations →
Alternatives to acme.sh
- DigiCert Trust Lifecycle ManagerA broad certificate governance platform for hybrid infrastructure and enterprise PKI.9.4
- DigiCert ONEFull certificate lifecycle control for large organizations managing diverse trust environments.9.3
- Keyfactor PlatformA broad certificate lifecycle platform for hybrid enterprise environments.9.1
See all acme.sh alternatives →
Used acme.sh? Be the first to review it
The editor score above is our own research. What this page doesn't have yet is a reader's view — what you used acme.sh for, what worked and what didn't. No stars are seeded and no review is paid for; an editor reads every one before it appears.
Write a reviewTwo minutes · verified accounts only · read by an editor before it appears
Featured on iTechGuides
acme.sh is listed in our Certificate Management Software directory. Add the badge to your site — it links back to this page.
<a href="https://www.itechguides.com/products/acme-sh/"><img src="https://www.itechguides.com/best/badge/acme-sh.svg" alt="Featured on iTechGuides" width="230" height="46"></a>
Guides on certificate management software
Reviewed by iTechGuides Editors · Editorial team · Updated Oct 2026
Advertiser disclosure: iTechGuides is reader-supported. We may earn a commission when you click some links. How we rank.
Last updated · How we research and update


