True, but if it fails and you don't know it, that could be a major problem. Monitoring with alert escalation helps me sleep at night.

That's not a problem specific to lets encrypt, or anything else really.

If you don't want to introduce complexity, then your problem is that you don't have tooling in place when you run into a situation where you have to rotate certs.

