Pricing
Pricing that
scales with you
Choose monthly or annual billing. No hidden fees. No per-certificate charges.
All plans include managed SSL provisioning, project-scoped API access, and provider-backed lifecycle status. Extra domains are billed monthly.
Lite
$25/mo
Up to 100 custom domains
Automatic SSL provisioning
Managed certificate renewals
Project-scoped REST API
Custom origin routing
23M requests / month
$0.50 / extra domain
Basic
$59/mo
Up to 300 custom domains
Everything in Lite
Project webhook events
Project metadata
54M requests / month
$0.30 / extra domain
Standard
$89/mo
Up to 500 custom domains
Everything in Basic
Custom request headers
Path rewrites
79M requests / month
$0.25 / extra domain
Enterprise
$249/mo
Up to 1,500 custom domains
Everything in Standard
1,500 included domains
219M requests / month
SSO entitlement
Contact sales for volume planning
$0.20 / extra domain
* Billed annually. Monthly equivalent shown.
One project-scoped control plane across every plan
Managed SSLProject APIOrigin routingWebhooksUsage billingLifecycle status
Compare all features
Everything included in every plan — see how they stack up.
| Feature | Lite | Basic | Standard | Enterprise |
|---|---|---|---|---|
| Catalog entitlements | ||||
| Domains included | 100 | 300 | 500 | 1,500 |
| Requests per month | 23M | 54M | 79M | 219M |
| Extra domain price | $0.50/mo | $0.30/mo | $0.25/mo | $0.20/mo |
| Enterprise SSO entitlement | — | — | — | ✓ |
| Available product capabilities | ||||
| Managed SSL provisioning | ✓ | ✓ | ✓ | ✓ |
| Project-scoped REST API | ✓ | ✓ | ✓ | ✓ |
| Project webhook configuration | ✓ | ✓ | ✓ | ✓ |
| Custom origin routing | ✓ | ✓ | ✓ | ✓ |
Why SSLforSaaS
Security that works the way you do
Every plan uses the same managed lifecycle and project-scoped control surface.
Provider-managed TLS
Cloudflare manages certificate issuance and renewal while SSLforSaaS keeps validation and activation state visible.
Visible SSL deployment states
Track DNS validation, certificate issuance, and activation in the app instead of relying on fixed timing promises.
Customer-facing custom domains
Customers browse their own domain while DNS points to the project-specific target shown in SSLforSaaS.
Product contract
Manage endpoint routing, customer DNS handoff, certificate lifecycle state, API access, and usage-backed plan limits from one project-scoped workflow.
Timing depends on DNS propagation and provider validation. The app keeps the current status visible until the hostname and certificate are active.
Subdomains can use the CNAME target shown in the app. Apex domains require a DNS provider that supports ALIAS, ANAME, or CNAME flattening. The domain owner must add the required DNS record.
Use the project-specific target shown in Project Settings. Customers point their own subdomain to that value; do not substitute a shared sample target.
No self-service certificate upload is exposed today. The current public project API focuses on project-scoped domain provisioning, status, metrics, and webhook events.
SSLforSaaS uses Cloudflare for its managed edge. Follow the exact DNS target and validation guidance shown for each domain; cross-account Cloudflare proxying can require a different DNS handoff.
Keep the existing route in place until the app reports the new hostname and certificate as active. Cutting DNS over before that state can interrupt traffic.
Cloudflare manages certificate renewal. SSLforSaaS surfaces lifecycle state and supported webhook events without promising a fixed renewal day.
The billing center shows the subscription actions currently available for your workspace. Timing and billing effects are determined by the active Stripe subscription and checkout state.
Get started today
Delight your customers.
Offer secured custom domains.
Create your account, configure a project, then continue through secure hosted checkout.