HTTPS stopped being optional years ago. A missing certificate now means a scary interstitial, a
“Not Secure” badge in the address bar and search engines quietly ranking you lower. For the sites
a big platform already secures for you, that's a non-issue — the platform handles it.
The trouble is every domain that falls through the cracks: a custom domain pointed at a no-SSL
page builder, a marketing funnel on its own URL, a fleet of client sites, an internal tool nobody
wants to touch. Securing those the “proper” way means learning about certificate signing requests,
generating keys, wrangling an ACME client and then remembering to renew every few months — forever.
So people either ship insecure, or pay a specialist, or set a calendar reminder and cross their
fingers. None of that is acceptable in a world that punishes plain HTTP. We built AutoCertify to
collapse the whole ordeal into a single DNS record you add once and never think about again.