Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027
By Nick Indge · Oct 8, 2026, 2:57 PM CDT
Let's Encrypt is continuing a push toward improved security by reducing free SSL/TLS certificate lifetimes from 90 days to 64 days, starting on February 10, 2027. For administrators already implementing modern ACME clients that support ARI (ACME Renewal Information), the change should be seamless. For those still relying on hardcoded renewal schedules or manual processes, next winter will be the d
Excerpt shown under fair-use limits. Full text remains with the original publisher.
People in this coverage
Explore their history and attributable record. Being mentioned does not imply endorsement.
Layer 1 · Claims & fact checks
AI analysisLayer 3 · Reporting analysis
AI analysisFramingFrames the policy change as a proactive security improvement, positioning Let's Encrypt positively.
Appeal to AuthoritySuggests that using modern tools guarantees a smooth transition, implying authority of the technology without evidence.
Historical ContextProvides background to justify shorter lifetimes, but does not cite sources for the historical claim.
Context
AI analysisMissing context
The article does not explain why Let's Encrypt chose a 64‑day period specifically, how this compares to industry standards, or what impact the change may have on different types of users and services.
Important context
Historically, Let's Encrypt has used 90‑day certificates to encourage automation; the shift to an even shorter period continues that security strategy, but the article provides no official statement or rationale from Let's Encrypt.
Opinion vs. reporting
AI analysisThe piece mixes factual reporting (dates, policy change) with evaluative language such as "continuing a push toward improved security" and claims about seamlessness, which are not substantiated and reflect opinion.