Alternatively, use caddy as a HTTPS server. It requests the certs from letsencrypt for you, for all domains that you configure it for.
But if your threat model includes nation states then LetsEncrypt should only be one part of your defense in depth strategy.