Regulatory Deadline — CLM
Manual certificate management is no longer viable.
In April 2025, the CA/Browser Forum voted unanimously — Apple, Google, Mozilla, and Microsoft — to reduce maximum TLS certificate lifetimes on a mandatory phased schedule. Domain validation reuse drops to just 10 days. Let's Encrypt is already issuing 6-day certificates.
~800
Certificate renewal events per year, per 100 services, at 47-day lifetimes (2029). At 100 days (March 2027): ~365 per year. Spreadsheets and calendar reminders don't survive this cadence.
Most companies don't have automated CLM. Enclave ships it in the same agent that handles segmentation and asset inventory. The 100-day maximum hits March 2027 — less than 12 months away. Every organization not automating certificate issuance and renewal today is 11 months from operational disruption.