certbot-nginx
Nginx plugin for Certbot
Decision gist · record as of 2026-08-14
Yes—if you run nginx on Linux and want to use Let's Encrypt certificates. The plugin is production-stable, actively maintained, has no known vulnerabilities, and requires only Certbot as a dependency. Install it when you need to automate certificate lifecycle management for nginx; skip it if you use a different web server or prefer manual certificate handling.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires root or administrator access to the web server and nginx to be installed and running on the same machine where Certbot is executed.
- Low install friction with a single runtime dependency on certbot.
- The package is actively maintained with a recent release and no known vulnerabilities, making it straightforward to add to an existing Certbot installation.
License · maintenance · safety
Apache-2.0 (permissive) — Licensed under Apache-2.0 (permissive), allowing use in commercial and private projects with minimal restrictions—just retain license notices.
last release 2026-07-15 (30 days) · last repo commit 2026-08-12 · 33,202 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 133,589 downloads/mo, #11,502 on PyPI
Alternatives
Verify before relying
pip install certbot-nginx
# Then use certbot with nginx plugin:
# certbot --nginx -d example.com- Whether the plugin supports nginx versions older than 0.8.48 or newer than what was tested in the current release.
- Specific nginx configuration formats or edge cases the plugin may not handle automatically.
What it is and what it does
Certbot-nginx is a plugin that extends Certbot to work directly with nginx web servers. It automates the process of obtaining a domain-validated TLS certificate from Let's Encrypt and installing it into your nginx configuration. The plugin handles the ACME challenge process by modifying nginx configuration temporarily to prove domain ownership, then deploys the certificate and restores the original configuration.
This package is intended for system administrators running nginx on Linux who want to automate HTTPS setup and renewal without manual certificate management. It requires root access to the web server and must be run directly on the machine hosting nginx. The plugin integrates with Certbot's broader ecosystem, supporting certificate revocation, automatic renewal, and configuration rollback if something goes wrong.
Use it for
- Automatically obtain and deploy a Let's Encrypt certificate to an nginx server with a single command.
- Set up automatic certificate renewal so HTTPS stays active without manual intervention.
- Migrate an existing nginx site from HTTP to HTTPS with minimal downtime.
- Manage certificates for multiple domains on a single nginx instance.
- Revoke or replace a certificate when needed through Certbot's standard workflows.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes—if you run nginx on Linux and want to use Let's Encrypt certificates.
The plugin is production-stable, actively maintained, has no known vulnerabilities, and requires only Certbot as a dependency. Install it when you need to automate certificate lifecycle management for nginx; skip it if you use a different web server or prefer manual certificate handling.
Install
certbot-nginx on PyPI
Before you install
Low install friction with a single runtime dependency on certbot. The package is actively maintained with a recent release and no known vulnerabilities, making it straightforward to add to an existing Certbot installation.
Requires root or administrator access to the web server and nginx to be installed and running on the same machine where Certbot is executed.
License in practice
Licensed under Apache-2.0 (permissive), allowing use in commercial and private projects with minimal restrictions—just retain license notices.
Quickstart
pip install certbot-nginx
# Then use certbot with nginx plugin:
# certbot --nginx -d example.com
Verify before relying
- Whether the plugin supports nginx versions older than 0.8.48 or newer than what was tested in the current release.
- Specific nginx configuration formats or edge cases the plugin may not handle automatically.
Package facts
| License | Apache-2.0 permissive |
| Python support | Supports the current Python release >=3.10 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 1 packagecertbot |
| Maintenance | Actively maintained 30 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 133,589 / month, #11,502 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableEnvironment :: PluginsIntended Audience :: System AdministratorsOperating System :: POSIX :: LinuxProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Topic :: Internet :: WWW/HTTPTopic :: SecurityTopic :: System :: Installation/SetupTopic :: System :: NetworkingTopic :: System :: Systems AdministrationTopic :: Utilities |
Evidence: certbot_nginx-5.7.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “nginx ssl certificate automation”
- certbot-nginxCertbot-nginx is a plugin for Certbot that automates obtaining and…
- certbotCertbot is a command-line client that automatically obtains TLS…
- django-sslserverProvides an SSL-enabled development server for Django that runs HTTPS…
Give your agent the search over MCP, or paste the wish link into any chat.
More WWW/HTTP packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
HTTPX is a fully featured HTTP client library for Python that provides both sync and async APIs, with support for HTTP/1.1 and HTTP/2, plus an integrated command-line client.
Install it if you are building new projects or modernizing existing ones that rely on HTTP.
A minimal low-level HTTP client library that sends HTTP requests with thread-safe and task-safe connection pooling, supporting HTTP/1.1, HTTP/2, proxies, and both sync and async interfaces.
aiohttp is an async HTTP client and server framework built on asyncio, supporting both WebSockets and middleware-based routing for building concurrent web applications.
Install it if you need async HTTP client or server capabilities in asyncio-based applications.
See also certbot · certbot-dns-cloudflare · acme · certbot-dns-route53 · certbot-dns-directadmin · certbot-dns-duckdns · certbot-dns-multi · certifi · secure-smtplib · crossplane