A Brief History of Certificate Transparency Logs
From a Google research proposal to a mandatory requirement for public trust.
50 guides on the protocol's timeline, its biggest security failures, and how certificates went from expensive to free.
From a Google research proposal to a mandatory requirement for public trust.
A header specification that grew into a permanent, hardcoded list inside browser source code.
From five-year certificates to a shrinking industry ceiling, with more reductions actively discussed.
Built by a small team in the early 1990s to make e-commerce on the web plausible at all.
A quiet technical milestone that took two more decades to become the web's default.
A feature that emerged once organizations started running many subdomains worth securing at once.
The industry body that turned certificate issuance from ad-hoc practice into an audited standard.
A multi-year saga ending in one of the largest CA trust removals browsers have ever executed.
A privacy and performance fix for OCSP, gradually adopted until it became standard practice.
From an optional cipher suite choice to a mandatory property of every TLS 1.3 session.