SSL certificate renewal failing - wildcard cert with external DNS

My SSL certificate for melogram.net is expiring July 17, 2026 and renewal keeps failing with:
NXDOMAIN looking up TXT for _acme-challenge.melogram.net

DNS is managed externally (not Netlify DNS), so wildcard cert validation via TXT record is not possible.

  • A record: @ → 75.2.60.5 :white_check_mark:
  • CNAME: www → lambent-starburst-242d5b.netlify.app :white_check_mark:
  • Site ID: 639b5012-7eac-4185-a17f-aee85f2ed0ef

Can you please remove the wildcard (*.melogram.net) from my certificate and reissue for melogram.net and www.melogram.net only?

Update: I contacted Squarespace support and they confirmed that ns-cloud-c1~c4.googledomains.com ARE Squarespace default nameservers (inherited from Google Domains acquisition). So the domain IS using Squarespace nameservers. The issue is purely that the wildcard *.melogram.net requires a TXT record for DNS validation which I cannot add through this setup. Can you please reissue the certificate for melogram.net and www.melogram.net only, without the wildcard?

I had to add mine manually, although DNS was on Cloudflare for my case: https://medium.com/@0l4m1de/how-to-fix-netlify-ssl-certificate-renewal-failure-when-your-dns-is-on-cloudflare-86193619a629