Available on all plans

Custom domains with automatic SSL

Add a domain, point your DNS, and sh0 handles everything else. SSL certificates, renewal, routing -- all automatic, all free.

Domain management, built in

Everything you need to manage custom domains and SSL -- no plugins, no external services.

Custom domains
Point any domain you own to any app on your server
Wildcard domains
Route *.yourdomain.com to services automatically
Auto-SSL via Let's Encrypt
HTTPS certificates provisioned and renewed without lifting a finger
Primary domain selection
Choose which domain is canonical -- others redirect automatically
Per-service domains
Give each service in a stack its own domain or subdomain
Instant propagation
sh0 detects DNS changes and provisions SSL within seconds

How it works

01

Add your domain in the dashboard

Type your domain name, select the app or service, and hit Add. That is it on the sh0 side.

02

Point DNS to your sh0 server

Create an A record (or CNAME) pointing to your server's IP. sh0 checks propagation automatically.

03

sh0 auto-provisions SSL via Let's Encrypt

Once DNS resolves, Caddy requests a certificate from Let's Encrypt. ACME challenge is handled internally -- no config needed.

04

Your app is live on your domain with HTTPS

Traffic flows through Caddy with automatic HTTPS. Certificate renewal happens in the background, forever.

The domain pipeline

Add Domain
DNS Verification
Let's Encrypt Challenge
SSL Certificate
Caddy Reverse Proxy
Your App

Entire flow happens automatically -- no config files, no certbot, no Nginx

Everything you need

Unlimited custom domains

Add as many domains as you want on any plan. There is no per-domain fee and no artificial limit.

Automatic Let's Encrypt SSL

Every domain gets a free SSL certificate from Let's Encrypt. Provisioned automatically when DNS is verified.

Zero-downtime certificate renewal

Caddy renews certificates before they expire. No restart, no downtime, no manual intervention.

Wildcard domain support

Configure *.yourdomain.com once and route subdomains to different services dynamically.

Per-service domain routing

Each service in a stack can have its own domain. api.example.com to the backend, app.example.com to the frontend.

Instant DNS propagation check

sh0 polls DNS records and shows you real-time status. Know exactly when your domain is ready.

The old way

  • x Buy and configure SSL certificates
  • x Set up Nginx/Apache manually
  • x Write certbot renewal scripts
  • x Configure virtual hosts per domain
  • x Debug SSL mixed content
  • x Certificates expire silently

The sh0 way

  • Add domain in dashboard
  • SSL provisioned automatically
  • Auto-renewal built-in
  • Per-service routing automatic
  • Mixed content warnings gone
  • Never think about certificates

Questions & answers

How many domains can I add? +
Unlimited. Every plan -- including Free -- supports as many custom domains as you need. There is no per-domain charge.
Is SSL really automatic? +
Yes. Once your DNS points to the sh0 server, Caddy handles the entire ACME challenge with Let's Encrypt. You never touch a certificate file, a config block, or a renewal script.
Do you support wildcard domains? +
Yes. Wildcard certificates require DNS-01 challenge, which means you need to configure a DNS provider API token. sh0 supports Cloudflare, Route53, and other popular DNS APIs for this.
How fast is SSL provisioning? +
Typically under 30 seconds after DNS propagates. Caddy requests the certificate as soon as it detects a valid DNS record. For wildcard domains using DNS-01, it depends on your DNS provider's API speed.
Can different services have different domains? +
Absolutely. In a stack with a frontend and an API, you can point app.example.com to the frontend and api.example.com to the backend. Each gets its own SSL certificate.
What about www vs non-www? +
Add both domains, then set one as primary. sh0 automatically redirects the non-primary to the primary with a 301 redirect. Works for www to apex or apex to www.

Your domain, your SSL, zero hassle

Add a domain, point DNS, and sh0 handles SSL certificates, renewal, and routing automatically.