SSL
SSL.com is a privately held, Houston-based Certificate Authority founded in 2002 that issues TLS/SSL, code signing, document signing, S/MIME, IoT/Matter, and C2PA digital certificates, serving software, financial, government, energy, and media enterprises through API-first self-serve and partner channels.
- Company typePrivate
- Founded2002
- HeadquartersHouston, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What SSL does
SSL.com Corporation is a privately held, Houston-headquartered Certificate Authority founded in 2002 that provides a comprehensive portfolio of digital trust and PKI solutions. Its core offerings span TLS/SSL certificates (single domain, wildcard, multi-domain/UCC/SAN), code signing certificates (IV, OV, EV), document signing certificates (Adobe-trusted), S/MIME email security certificates, Verified/Common/Government Mark Certificates for BIMI, IoT/Matter device attestation certificates (DAC/PAI), and C2PA-conformant certificates for digital media authenticity. Underlying technology centers on public key infrastructure with a RESTful SWS API, ACME protocol support, Cloud Signature Consortium (CSC)-compliant eSigner cloud signing service backed by managed HSMs, and developer tooling including CodeSignTool, DocSignTool, eSigner Cloud Key Adapter (CKA), and SSL Manager (v3.2) with native YubiKey FIPS integration.
The company generates revenue through subscription-based certificate issuance (annual billing across DV/OV/EV tiers), usage-based cloud signing services (eSigner for code and documents), managed private PKI and Custom-Branded CA services, and an affiliate program offering up to 25% commission. Distribution is API-first and self-serve, complemented by an affiliate/reseller channel and direct enterprise engagement. Customer segments span eight verticals: Software & DevOps, Cloud Infrastructure & CDN, Banking & Financial Services, Government & Public Sector, Energy & Utilities, Media & Content Publishing, IoT & Device Manufacturers, and Legal & Professional Services. The company is WebTrust-accredited across seven categories (audited annually by BDO) and holds NAESB ACA accreditation for energy-sector certificates, with global operating reach across North America, Latin America, Europe, and Asia Pacific.
SSL firmographics
Firmographics- Name
- SSL
- Legal name
- SSL.com Corporation
- Website
- https://ssl.com
- Company type
- Private
- Founded year
- 2002
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- SSL.com is a privately held, Houston-based Certificate Authority founded in 2002 that issues TLS/SSL, code signing, document signing, S/MIME, IoT/Matter, and C2PA digital certificates, serving software, financial, government, energy, and media enterprises through API-first self-serve and partner channels.
- Ownership category
- akta.pro rank
SSL industry classification
Industry- Product category
- Certificate Authority / PKI Services
- NAICS
- Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (518)
- akta.pro primary industry
- Device Identity & Certificate-Based Authentication (PKI) (BPAMAEAL)
Keywords
Where SSL is headquartered
LocationHeadquarters
- HQ city
- Houston
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
SSL business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Infrastructure, Operations, Others, Marketing or Sales
Revenue model
- Digital Certificates: SSL.com generates revenue primarily through issuance and renewal of digital certificates including TLS/SSL (single domain, wildcard, multi-domain/UCC/SAN), code signing (IV, OV, EV), document signing, email security (S/MIME, VMC), and device/IoT certificates (Matter DAC/PAI). Revenue is subscription-based with annual billing cycles.
- Cloud Signing Services (eSigner): Cloud-based signing services including eSigner for code and document signing, enabling enterprises to sign without hardware tokens. Revenue model based on subscription with usage-based components.
- Enterprise PKI Services: Managed PKI certificates, dedicated private PKI (Compliance and Enterprise), and custom-branded CA services for enterprise customers requiring private certificate infrastructure.
- Partner/Affiliate Revenue Share: Revenue sharing with affiliate partners (up to 25% commission on PKI, Cloud Signing, and Certificate Solutions) and resellers through volume purchasing programs.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | TLS/SSL Certificates - Various validation levels and coverage types |
| Subscription | Annual | Code Signing Certificates - IV, OV, and EV levels |
| Subscription | Annual | Document Signing Certificates - IV, OV, and IV+OV types |
| Hybrid | Annual | eSigner Cloud Signing Service |
| Subscription | Annual | Managed PKI and Private CA Services |
Go-to-market motion2 records
Distribution channels5 records
Marketing channels5 records
SSL product offering
Product offeringCore offering
SSL.com is a globally-trusted Certificate Authority (CA) that issues digital certificates and operates Public Key Infrastructure (PKI) services. Its core offerings include TLS/SSL certificates for website security, code signing certificates for software integrity, document signing certificates, S/MIME email security certificates, IoT/Matter device certificates, and C2PA-conformant content authenticity certificates. The company also provides eSigner cloud-based signing services, an SWS REST API for automation, and the SSL Manager Windows application for certificate deployment.
Product overview
SSL.com is a globally-trusted Certificate Authority (CA) established in 2002, offering a comprehensive portfolio of digital certificate and PKI solutions. The product portfolio centers on TLS/SSL Certificates (including Single Domain, Wildcard, and Multi-Domain variants) as the core offering, supplemented by specialized certificate types across five key categories: (1) Email & Brand Trust including S/MIME certificates and Verified/Common/Government Mark Certificates (VMC/CMC/GMC) for BIMI email authentication; (2) Software Integrity featuring Code Signing Certificates (IV/OV/EV) with cloud-based eSigner services including CodeSignTool CLI, Cloud Key Adapter (CKA), and Client SDK; (3) Document Trust with Document Signing Certificates and eSigner for Documents including DocSignTool, Document Signing Gateway, and Watch Folder automation; (4) Device & Machine Trust encompassing Matter IoT certificates (DAC/PAI) and Client Authentication certificates; and (5) Content Authenticity offering C2PA-conformant and CAWG certificates for digital media provenance. Additional offerings include Private PKI (Compliance and Enterprise), Managed PKI Certificates, Custom-Branded CA, and NAESB energy sector certificates. SSL Manager (v3.2) serves as the flagship Windows management application with YubiKey FIPS integration, while the RESTful SWS API enables enterprise automation. The company has expanded through acquisitions including VikingCloud's digital certificate business (2025).
Differentiator
Problem solved
Functional benefit
Brands
- eSigner: Cloud-based digital signing service for code signing and document signing certificates
- SSL Manager
- CodeSignTool
- DocSignTool
Products and services
- TLS/SSL Certificates Digital certificates for website security and HTTPS encryption, available in Single Domain, Wildcard, and Multi-Domain (UCC/SAN) variants with DV, OV, and EV validation levels.
- S/MIME Certificates Email security certificates available in Basic, Individual (IV), Organization (OV), and Sponsor (IV+OV) validation levels for S/MIME email encryption and digital signing.
- Verified Mark Certificates (VMC) Mark certificates that display verified brand logos in email clients supporting the BIMI (Brand Indicators for Message Identification) standard.
- Common Mark Certificates (CMC) Mark certificates for general brand display in supported email clients.
- Government Mark Certificates (GMC) Mark certificates designed for government entities with enhanced validation requirements.
- Code Signing Certificates Certificates for signing software and code, available in Individual Validation (IV), Organization Validation (OV), Extended Validation (EV), and Sole Proprietor EV variants. Required for signing executables and software packages.
- eSigner for Code Cloud-based code signing service enabling remote signing from any internet-connected device without hardware tokens. Includes CodeSignTool CLI utility and CI/CD pipeline integration.
- Document Signing Certificates Certificates for digitally signing PDF documents, available in IV, OV, and IV+OV variants. Adobe-trusted for compliant document signatures.
- eSigner for Documents Cloud-based document signing service for PDF files. Includes DocSignTool CLI utility, Document Signing Gateway, and Watch Folder automation for bulk document signing.
- Matter Certificates (DAC/PAI) IoT device certificates for the Matter smart home protocol. Includes Device Attestation Certificates (DAC) and Product Attestation Intermediate (PAI) certificates.
- Client Authentication Certificates Certificates for network access and client authentication, enabling secure identity verification for network resources.
- C2PA-Conformant Certificates Coalition for Content Provenance and Authenticity (C2PA) conformant certificates for digital media authenticity verification, combating deepfakes and content manipulation. First publicly trusted CA to offer production-ready C2PA certificates.
- CAWG Certificates Content Authentication Working Group certificates for organizations and individuals implementing content authenticity standards.
- Private Compliance PKI Dedicated private PKI infrastructure for organizations requiring compliance-focused certificate authority services.
- Private Enterprise PKI Dedicated private PKI infrastructure for enterprise certificate management needs.
- Managed PKI Certificates Managed public key infrastructure service for organizations requiring outsourced PKI management.
- Custom-Branded CA Custom-branded certificate authority services allowing organizations to issue certificates under their own brand.
- NAESB WEQ-12 Certificates Industry-specific certificates for the energy sector, compliant with NAESB WEQ-12 standards. Issued under SSL.com's NAESB ACA Accreditation.
- SSL Manager Multi-purpose Windows application for managing, installing, and deploying certificates. Includes PKI utility functions, signing tools, YubiKey integration, and SSH deployment capabilities.
Quantifiable outcome
- First publicly trusted CA to launch production-ready C2PA-conformant certificates
- +1 more outcomes
Companies that use SSL
Customer profileNamed customers3 records
Segments8 records
Ideal customer profiles8 records
SSL technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration1 record
Feature5 records
SSL partnerships and signals
Strategic signalPartnerships
Six partnerships are on record, tiered minor and core.
- VikingCloudminorSSL.com acquired VikingCloud's digital certificate customer portfolio to expand its customer base and improve service continuity. The acquisition integrates VikingCloud's certificate users into SSL.com's digital certificate ecosystem, supporting strategic growth.
- YubicocoreSSL Manager is certified as 'Works with YubiKey', enabling seamless integration for EV code signing and document signing certificate installation on YubiKey FIPS USB tokens. The partnership enables enterprises to use YubiKey hardware for secure key storage.
- BDO USAcoreBDO USA serves as SSL.com's accredited auditor for annual WebTrust certifications, evaluating compliance with CA/Browser Forum requirements and industry standards.
- Digitality ConsultingminorEarly customer of SSL.com's C2PA-conformant certificates for implementing digital media content authentication and verification services.
- TruepicminorEarly customer of SSL.com's C2PA-conformant certificates using content authentication technology for digital media verification and provenance tracking.
- VbrickminorEarly customer of SSL.com's C2PA-conformant certificates integrating standard-compliant content authentication technology into enterprise video platforms.
Scale indicators5 records
Recent moves7 records
Expansion highlights6 records
SSL competitors and assessment
Company assessmentBroad incumbents
- DigiCert: DigiCert is the largest commercial Certificate Authority globally, offering TLS/SSL, code signing, document signing, IoT, and PKI solutions with a much larger sales footprint. It is the dominant enterprise CA and the most direct competitor to SSL.com across nearly every product line, but operates at significantly greater scale with private equity backing.
- Entrust: Entrust is a long-established identity and certificate authority offering TLS, code signing, PKI, and digital identity solutions to enterprises and governments. It overlaps with SSL.com across WebTrust-accredited certificate issuance and high-assurance PKI but operates as a broader identity and security platform.
- AWS Certificate Manager / AWS Private CA: AWS Certificate Manager and AWS Private CA provide TLS and private PKI services natively integrated with the AWS cloud ecosystem, including free public TLS certificates for AWS workloads. It competes with SSL.com's cloud infrastructure and CDN customer segment and could limit enterprise migration to standalone CAs for AWS-centric deployments.
- GoDaddy SSL: GoDaddy is the largest domain registrar and resells SSL/TLS certificates from multiple CAs to its massive SMB customer base. It is both a reseller partner and indirect competitor to SSL.com in the SMB certificate segment, with bundled hosting and website builder offerings that capture demand SSL.com addresses through self-serve.
Direct peers
- GlobalSign: GlobalSign is a WebTrust-accredited Certificate Authority offering TLS, code signing, S/MIME, and IoT/PKI solutions with strong enterprise and managed PKI capabilities. It competes directly with SSL.com in the mid-market and enterprise PKI segment and shares the same browser root inclusion framework.
- Sectigo: Sectigo (formerly Comodo CA) is a privately held commercial Certificate Authority offering a comparable portfolio of TLS/SSL, code signing, document signing, S/MIME, and IoT certificates. It competes head-to-head with SSL.com across SMB and enterprise segments and is one of the most directly comparable peers in the WebTrust-accredited CA market.
- Keyfactor: Keyfactor is a PKI-as-a-service and certificate lifecycle management platform focused on enterprise machine identity, IoT, and DevOps certificate automation. It competes with SSL.com's Managed PKI, Private PKI, and eSigner enterprise offerings, particularly for customers seeking a pure-play PKI management layer.
- IdenTrust: IdenTrust is a WebTrust-accredited Certificate Authority specializing in high-assurance identity, banking, and government PKI, including eIDAS qualified certificates. It competes with SSL.com in regulated financial, government, and cross-border digital signature markets and shares similar compliance and audit frameworks.
Regional players
- Actalis: Actalis is an Italian-based Certificate Authority offering TLS, code signing, document signing, and eIDAS qualified certificates primarily across European markets. It is comparable to SSL.com across the certificate portfolio but is more regionally focused on EU compliance-driven demand.
Emerging players
- Let's Encrypt: Let's Encrypt is a free, automated, open Certificate Authority operated by ISRG that issues the majority of DV TLS certificates worldwide. It is not a direct commercial competitor but defines the commodity DV TLS pricing floor and drives the 90-day/certificate automation trend that SSL.com must adapt to via ACME and CLM offerings.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
SSL social profiles
Digital presenceSSL compliance and trust
Trust signalCompliance8 records
SSL financial estimates
Financial estimateRevenue estimate
Valuation estimate
SSL leadership team
Management profileNumber of profiles
Profiles2 records
SSL subsidiaries and ownership
Company hierarchySubsidiaries1 record
SSL funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SSL M&A and investment
M&A and investmentM&A1 record
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SSL
What does SSL do?
SSL.com is a globally-trusted Certificate Authority (CA) that issues digital certificates and operates Public Key Infrastructure (PKI) services. Its core offerings include TLS/SSL certificates for website security, code signing certificates for software integrity, document signing certificates, S/MIME email security certificates, IoT/Matter device certificates, and C2PA-conformant content authenticity certificates. The company also provides eSigner cloud-based signing services, an SWS REST API for automation, and the SSL Manager Windows application for certificate deployment.
Is SSL a public or private company?
SSL is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was SSL founded?
SSL was founded in 2002. It employs 11 to 50 people.
Where is SSL based?
SSL is headquartered in Houston, United States, in the North America region.
How does SSL make money?
Four revenue lines are on record. Digital Certificates are the primary driver. The others are cloud Signing Services (eSigner), enterprise PKI Services and partner/Affiliate Revenue Share.
Who are SSL's main competitors?
Broad incumbents on record are DigiCert, Entrust, AWS Certificate Manager / AWS Private CA and GoDaddy SSL. Direct peers are GlobalSign, Sectigo, Keyfactor and IdenTrust. Actalis is listed as a regional player. Let's Encrypt is listed as an emerging player.
Does SSL have an API?
Yes. SSL.com's RESTful SWS API enables automation of certificate ordering and management. Available at sws-test.sslpki.com for sandbox/testing and sws.sslpki.com for production. Supports certificate orders, issuance, revocation, and management operations. Java SDK (eSigner Client SDK) available for PDF digital signatures using cloud HSM. Additional tools include CodeSignTool (multi-platform Java command line utility for Microsoft Authenticode and Java code signing) and DocSignTool (multi-platform Java command line utility for PDF signing). ACME protocol supported for automated certificate issuance. Developer documentation is at ssl.com/ssl-web-services-sws-api.
What industry is SSL in?
SSL's product category is Certificate Authority / PKI Services. Its primary akta.pro industry code is BPAMAEAL, Device Identity & Certificate-Based Authentication (PKI). Its NAICS code is 518.