@readystack/cert-lifetime-lint-47day
v0.1.1
Published
Finds the 365-day and 90-day certificate assumptions left in your cert-manager, Terraform, ACME and monitoring config. The public TLS maximum is 200 days now, 100 on 2027-03-15, 47 on 2029-03-15.
Maintainers
Readme
Cert Lifetime Lint - 200/100/47-Day TLS Audit
Finds the 365-day and 90-day certificate assumptions left in your cert-manager, Terraform, ACME and monitoring config. The public TLS maximum is 200 days now, 100 on 2027-03-15, 47 on 2029-03-15.
Install
npx @readystack/cert-lifetime-lint-47day fileNode 18+. The same 24 rules as the VS Code extension, from a terminal or CI.
Free
- Check the open file against all 24 rules - every finding, with line number, severity and the date the limit changes; Reopen the last report without re-running the check; List every rule that ships inside, so you can see what is and is not covered
--ruleslists every rule
With a licence ($29 once)
- Every file in the repository in one pass; A CI gate that fails the build; An exported audit file; Rewrite the offending durations in place
@readystack/cert-lifetime-lint-47day --dir ./templates --report html --out report.htmlHosted certificate monitors bill $17-19 every month - Better Stack Starter is $204/year for 20 domains and TrackSSL Starter is $19/month - and they watch a certificate after it has been issued, not the config that issues it.
Set READYSTACK_LICENSE=<key> or run --license <key> once.
