CIOPages
DirectoryCybersecurityData Security & DLPACME.sh

ACME.sh

Open Source

About ACME.sh

ACME.sh is a lightweight, Unix shell script-based ACME protocol client designed for automating the issuance, renewal, and installation of SSL/TLS certificates. It supports a wide range of certificate authorities including Let's Encrypt and ZeroSSL, and offers compatibility with multiple Unix-like operating systems such as Linux distributions, FreeBSD, macOS, and others. The client supports advanced certificate types including ECDSA, SAN, and wildcard certificates without requiring root or sudo access, making it suitable for secure, automated certificate management in diverse enterprise environments.

Targeted at enterprises seeking a simple yet powerful solution for certificate lifecycle management, ACME.sh eliminates dependencies on external languages like Python and integrates easily into existing Unix shell environments. Its Docker readiness and support for cron job notifications enhance operational efficiency and reliability. The product is particularly valuable for organizations prioritizing open-source solutions for cybersecurity and data security, enabling seamless integration with DevOps workflows and infrastructure automation.

Key Capabilities

  • Full ACME protocol implementation
  • Support for ECDSA, SAN, and wildcard certificates
  • No root or sudo access required
  • Compatible with Bash, dash, and sh shells
  • Docker ready with cron job notifications

Integrations

DockerCron job schedulingUnix shell environments

Related Buyer Guides

Independent evaluation frameworks for this category.

API Security Platforms
The API is now the primary attack surface, and a WAF pointed at it isn't API security. Evaluate Salt, Akamai (Noname), Imperva, F5, Traceable, Wallarm, Cequence, and Data Theorem on whether they actually discover your shadow APIs and catch BOLA and business-logic abuse at runtime — not just sign endpoints off as “protected.”
Attack Surface Management (ASM / CTEM)
Evaluate Wiz, CrowdStrike Falcon Surface, Microsoft Defender EASM, Cortex Xpanse, Censys, CyCognito, Tenable, and runZero across EASM, CAASM, and platform-embedded camps — judged on discovery accuracy and how cleanly the surface feeds prioritization, not how many assets it claims to find.
Cloud Access Security Broker (CASB)
Evaluate Netskope, Microsoft Defender for Cloud Apps, Zscaler, and Palo Alto for SaaS security, shadow IT discovery, and data protection.

This profile was compiled by CIOPages from public sources with AI assistance, and may be incomplete or out of date. It is informational only and not an endorsement. Represent this vendor? Claim this listing or .

Quick Facts

github.com/acmesh-official/acme.sh
CategoryCybersecurity
SubcategoryData Security & DLP
PricingOpen Source
DeploymentOpen Source
Target SizeEnterprise