SimpleSSL Pro
Developer Tools
Only for Mac
$4.99
Mac
Build Bundle has a Key import issue and a fix has been submitted to App Store.
SimpleSSL Pro is a complete certificate operations toolkit for macOS — key generation, CSR building, chain inspection, bundle assembly, and automated Let’s Encrypt issuance, all running natively on your Mac without OpenSSL, without a terminal, and without sending a single byte to any third-party server.
Built for sysadmins and developers who manage certificates seriously.
Key & CSR Generator
Generate production-ready keys and CSRs for DV, OV, and EV certificates. All three certificate types are fully supported, including organisation fields for OV and jurisdiction fields for EV. Secure Enclave support keeps private keys in hardware on T2 and Apple Silicon Macs.
* RSA (2048 / 3072 / 4096) and ECDSA (P-256 / P-384) key generation
* Ed25519 key generation via CryptoKit
* DV, OV, and EV CSR generation with full field sets
* Subject Alternative Names (SANs) — add as many as needed
* Secure Enclave key storage on T2 / Apple Silicon
* Output: .key, .csr, .crt (self-signed), .pub
Certificate Bundle Builder
Assemble export bundles from any combination of certificates and keys. SimpleSSL Pro validates the chain, matches the key, fetches missing intermediates automatically, and exports in every format your infrastructure needs.
* Drag-and-drop or browse for key and certificate files
* Automatic chain ordering: server → intermediates → root
* Fetch Issuing CA — retrieves missing intermediates via AIA
* Duplicate detection by SHA-256 fingerprint
* Private key / certificate match validation
* Export: .p12, .pfx, .pem bundle, .der
Chain Checker
Inspect any live TLS chain or paste PEM blocks directly. See expiry dates, SANs, hostname match results, chain order validation, and trust evaluation against macOS system roots — all in one screen.
* Live TLS check — connect to any host, any port
* PEM paste mode for offline or pre-deployment inspection
* Per-certificate: expiry, CN, SANs, issuer, serial
* RFC 6125 hostname + wildcard matching
* Chain order and trust evaluation via Security framework
* Configurable timeout (10–120 seconds)
ACME Certificate Manager
Request and renew Let’s Encrypt certificates without leaving the app. Configure DNS challenge automation with Cloudflare or Namecheap, set up CNAME delegation for multi-provider environments, or handle DNS manually. Certificates save directly to your chosen output directory in standard formats.
* Let’s Encrypt (and compatible ACME CAs) via RFC 8555
* DNS-01 challenge with Cloudflare API integration
* DNS-01 challenge with Namecheap API integration
* Manual DNS and CNAME delegation modes
* Auto-export on issuance: .key, .csr, .crt, chain, fullchain
* Cloud sync for ACME profiles across your Macs
* ACME account key stored securely in macOS Keychain
Privacy & security
No analytics. No advertising. No crash reporters. Your keys, certificates, and DNS credentials never leave your device except for the outbound connections you explicitly initiate. DNS provider API tokens are stored in macOS Keychain, not in any file or preference. Full privacy policy at privacy.ridgeley.dev.
Ratings & Reviews
- This app hasn’t received enough ratings or reviews to display an overview.
The developer, Subsonic Radio, indicated that the app’s privacy practices may include handling of data as described below. For more information, see the developer’s privacy policy .
Data Not Collected
The developer does not collect any data from this app.
Accessibility
The developer has not yet indicated which accessibility features this app supports. Learn More
Information
- Seller
- Ridgeley, LLC
- Size
- 1.5 MB
- Category
- Developer Tools
- Compatibility
Requires macOS 12.4 or later.
- Mac
Requires macOS 12.4 or later.
- Mac
- Age Rating
4+
- 4+
- Copyright
- © 2026 Ridgeley, LLC

