Suggestions appear as you type. Use the up and down arrows to choose one and Enter to open it.

This page's audience real numbers from our own analytics — open to see them
–Visitors
–Page views
–Clicks to vendors
–Time on page
–Reading now
Clicks to vendors, by tool
  • –
Top countries
  • –
Devices
  • –

– · counted by iTechGuides's own first-party analytics, bots removed, every figure rounded down · how we count

acme.sh

Free#26 of 31 in Certificate Management Software

acme.sh: A free, scriptable ACME client for cross-platform certificate issuance and renewal. Ranked #26 of 31 in Certificate Management Software by our editors (6.7/10); pricing: Free plan; best for scriptable, cross-platform ACME automation.

6.7/10Editor score
acme.sh6.7 Visit acme.sh

At a glance

  • Editor score
    6.7 / 10
  • Pricing
    Free plan
  • Best for
    Scriptable, cross-platform ACME automation
  • Free plan
    Yes
  • Paid from
    None
  • Facts checked
    20 Sep 2026
acme.sh screenshot
  • Where it wins

    • Free open-source issuance, renewal, installation, and deployment workflows
    • Supports DNS, webroot, standalone, Apache, and Nginx validation
    • Works with SAN, wildcard, ECC, and RSA certificates across multiple CAs
  • Where it doesn't

    • Requires self-managed systems and shell-based configuration
    • Does not provide verified certificate discovery
    • Does not provide centralized certificate inventory

Our verdict on acme.sh

acme.sh is an open-source ACME protocol client written in Unix shell for issuing, renewing, installing, and deploying SSL/TLS certificates on self-managed systems. It supports Windows, macOS, Linux, and self-hosted environments, making it a fit for teams that prefer scriptable certificate operations across different platforms. The project is officially maintained by ZeroSSL while retaining the acme.sh name, and it remains available as an actively maintained GitHub project.

Its strongest area is workflow coverage. acme.sh supports webroot, standalone, Apache, Nginx, DNS API, and DNS manual validation modes, along with SAN and wildcard certificates. It supports both ECC and RSA certificates, certificate revocation, Docker, and integrations with ZeroSSL, Let's Encrypt, SSL.com, Google Public CA, Actalis, and DNS providers. A recurring cron job can handle unattended renewal, while installation and service reload hooks support copying certificates and reloading services after deployment. These capabilities make it suitable for operators who want certificate automation that can be incorporated into existing scripts and service-management routines.

The trade-off is its operational model. acme.sh is designed for self-managed systems rather than centralized certificate discovery or inventory, so it fits teams that already manage certificate locations, validation methods, deployment hooks, and renewal jobs. Buyers seeking a focused ACME client with broad validation and deployment options should consider it. Teams that need verified discovery across environments or a centralized inventory should choose a certificate management product built around those functions instead.

acme.sh pricing

Plans Free planFree Free to use — no paid tier required for the core job.
See plans on github.com

acme.sh fact sheet

Free planYes
Paid fromNone
Certificate discoveryNot verified
Automatic renewalYes
Deployment automationYes
Revocation workflowsYes
Certificate typesTls
CA integrationsYes
DeploymentSelf-hosted
PlatformsWindows, macOS, Linux
SupportDocs
Built forSolo, Small business, Mid-market, Enterprise (editorial estimate)
Integrations6 integrations: ZeroSSL, Let's Encrypt, SSL.com, Google Public CA, Actalis, DNS providers See all →
PricingFree plan
Websitegithub.com
Facts checked20 Sep 2026

acme.sh integrations

acme.sh lists 6 integrations on its own site.

  • ZeroSSL
  • Let's Encrypt
  • SSL.com
  • Google Public CA
  • Actalis
  • DNS providers

See all acme.sh integrations →

Alternatives to acme.sh

See all acme.sh alternatives →

Used acme.sh? Be the first to review it

The editor score above is our own research. What this page doesn't have yet is a reader's view — what you used acme.sh for, what worked and what didn't. No stars are seeded and no review is paid for; an editor reads every one before it appears.

Write a reviewTwo minutes · verified accounts only · read by an editor before it appears

Reviews come only from verified accounts. Sign in or create an account first — your e-mail is never shown.

Your rating

0 characters · at least 80, up to 3,000

Posted from your verified account. Reviews appear after an editor reads them, usually within two working days.

Featured on iTechGuides

Featured on iTechGuides — acme.sh 6.7/10

acme.sh is listed in our Certificate Management Software directory. Add the badge to your site — it links back to this page.

<a href="https://www.itechguides.com/products/acme-sh/"><img src="https://www.itechguides.com/best/badge/acme-sh.svg" alt="Featured on iTechGuides" width="230" height="46"></a>

Guides on certificate management software

Reviewed by iTechGuides Editors · Editorial team · Updated Oct 2026

Advertiser disclosure: iTechGuides is reader-supported. We may earn a commission when you click some links. How we rank.

Last updated · How we research and update