Caddy is great for automated cert management, probably one of the cleanest out there.
But in environments where you don’t control the full stack (e.g. legacy infra, third-party APIs, multi-cloud setups), or when certs are provisioned manually or via external teams, things get trickier. Expiry issues still happen more often than we’d like.
That’s what led me to build SSL Guardian, more as a safety net to monitor certs across various sources and alert before things break. Even with automation, having external validation helps avoid blind spots.