CertCore
Production SSL control panel

Manage SSL certificates with operational trust.

CertCore gives teams a compact workspace for domain verification, wildcard SSL, encrypted private keys, certificate downloads, secure billing, and expiry reminders.

DNS-01

wildcard SSL

HTTP-01

domain proof

30/14/7

expiry alerts

Live SSL Mesh

ACME, DNS proof, encrypted exports

DNS-01

TXT proof locked

ACME order

Challenge accepted

Private key

Encrypted at rest

Certificate Queue

Live production posture

HEALTHY

Signed webhooks

Secure payment callbacks

SSRF guarded

Public challenge checks

Verified users

Email-gated operations

Rate limited

Protected ACME quota

Secure plans

Pricing that matches your domain load

Landing and billing use the same plan data. Start in staging, then scale into production certificate operations.

Read Docs
Free Trial
KES 0 /mo

1 domains

1 domain
Staging certificate flow
Manual verification
Get Free Trial
Basic
KES 1,500 /mo

5 domains

5 domains
Certificate downloads
Email notifications
Get Basic
Agency
KES 7,500 /mo

75 domains

75 domains
Team access
Bulk import ready
Get Agency

Certificate flow

From domain proof to installable files.

A compact workflow for standard HTTP-01 certificates and DNS-01 wildcard issuance. Every step is scoped, logged, and rate-limited.

1

Add domain

Create the domain record and receive a scoped challenge.

2

Publish proof

Place HTTP-01 file or DNS-01 TXT record exactly as shown.

3

Verify safely

CertCore checks public targets and blocks private-network verification.

4

Issue and install

Download certificate, key, chain, fullchain, and install guides.

Security model

Built like a control plane, not a brochure.

Encrypted private keys

Certificate private keys are encrypted at rest and owner-scoped on download.

Verified operations

Billing, API, and certificate actions require verified accounts.

Provider layer

YAAC is isolated behind a swappable ACME provider boundary.

Expiry notifications

30, 14, and 7 day reminders are sent and logged.

Ready for controlled production rollout

Centralize SSL operations before certificate drift becomes an incident.

Add domains, prove ownership, issue certificates, and keep expiry signals visible from one focused workspace.