docs/documentation/platform/pki/alerting/overview.mdx
Infisical allows you to configure alerts for key certificate lifecycle events, keeping your team informed when certificates are issued, renewed, revoked, or approaching expiration. Alerts are configured per project and can be delivered through multiple notification channels.
| Alert Type | Trigger | Description |
|---|---|---|
| Certificate Expiration | Scheduled | Notifies when certificates are approaching their expiration date, based on a configurable time window (e.g., 30 days before expiry). |
| Certificate Issuance | Real time | Notifies when a new certificate is issued through a certificate profile (via API, CSR signing, or EST/ACME enrollment). |
| Certificate Renewal | Real time | Notifies when an existing certificate is renewed, either manually or through auto renewal. |
| Certificate Revocation | Real time | Notifies when a certificate is revoked. |
To create an alert, head to your Certificate Management Project > Alerting and press Create Certificate Alert.
Here's some guidance for each field in the alert configuration sequence:
tls-expiry-alert or prod-issuance-notify.30d. Supported units: d (days), w (weeks), m (months), y (years).example.com by setting the field to Common Name, the operator to Contains, and the value to example.com.Alerts can be delivered through one or more notification channels:
You can configure up to 10 notification channels per alert.