Connect. Secure. Monitor.

Connect, secure and monitor your customers' custom domains.

BrandSSL is the simplest way to manage SSL and domains for your SaaS customers' custom domains. Connect applies the DNS through your customer's registrar, Secure issues certificates within seconds, and Monitor watches every connection from then on.

Start Free Trial See a live demo

Try it free for three days. Cancel anytime.

https://shop.acme.com your customer's domain
Domain entered shop.acme.com
Registrar detected NamecheapNamecheap
Customer signs in to Namecheap approves once
DNS records applied for them CNAME, A + more
Done. Your customer connected without editing complicated DNS records.
Trusted by some of the world's most innovative businesses
Syncfusion The Access Group VBOUT Mayzing Proxi Convers8ions Loanspark Sales.rocks Trustup.be Terraview OpenRead

Everything a customer domain needs, in one place.

Three products, one platform. Each works on its own, so start with whichever you need.

Your customers never have to configure DNS records by hand.

The usual flow asks a customer to copy DNS records into a panel they have never opened. Many stall there, and the rest need help from support.

BrandSSL replaces all of that with a sign in. We detect where the domain lives, the customer logs in to their registrar and approves, and we write the exact records your platform specifies.

Supported registrars
Namecheap
GoDaddy
Hostinger
Cloudflare
DigitalOcean
More being added

Domains held anywhere else still connect the classic way. Your customer adds the records your platform specifies.

Provider names and logos are used only to identify the services they refer to. Their use does not imply any affiliation, sponsorship, or endorsement.

shop.acme.com
Your customer's domain
HTTP
BrandSSL edge validates and issues
shop.acme.com
Secured and routed to your application
HTTPS · TLS 1.3

Certificates issued at the edge, in seconds.

A globally distributed reverse proxy watches for traffic on your customers' domains. When an unsecured request appears, BrandSSL validates the domain and issues a certificate on the spot.

Traffic keeps flowing over HTTP while provisioning runs, then switches to HTTPS the moment the certificate is in place. No downtime, and nothing for your team to configure per domain.

$ point any domain at 142.93.54.52 or my.brandssl.io

On demand, or by API call.

Once you are set up, choose how certificates are provisioned. On demand secures any domain pointed at your BrandSSL address the moment traffic arrives. It is the default, and it needs no code at all.

The API gives your platform explicit control instead. Add and remove domains, read connection status, upload custom certificates and receive webhooks when anything changes.

Read the API documentation
# provision a certificate
curl -XPOST -H "Content-type: application/json" \
-d '{"domain": "shop.acme.com"}' \
'https://www.brandssl.io/api/{API_KEY}/tls'
HTTP 201 · certificate provisioned

Performance and reliability as a standard

Our globally distributed infrastructure is designed for reliability, delivering the highest standard of SSL security and performance, every minute of the day.

500k+
Custom domain names secured
Millions
Of requests served daily
99.99%
Service uptime
"I highly recommend working with BrandSSL if you're a SaaS company looking to go to market quickly."
VBOUT
Richard F.
CEO of VBOUT
Read the case study

Live in about five minutes.

Full setup guide

Create an account

Sign up and open the dashboard. Most teams finish the whole setup inside five minutes.

Configure your product

For on demand SSL, add your application endpoint and branded CNAME. For Connect, set the records customer domains should carry.

Customers add their domain

They sign in at their registrar and approve, or add the records themselves. Traffic lands on your platform either way.

Offer secured custom domains.

Try BrandSSL free for three days. Cancel anytime.

Start Free Trial