← Amazon Trust Services cases
Bugzilla #1713976 Policy Document Issue

Amazon Trust Services: CP/CPS does not specify key compromise methods

RESOLVED FIXED Amazon Trust Services
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

The case involves Amazon Trust Services' failure to specify methods for demonstrating private key compromise in their Certificate Policy/Certificate Practice Statement (CP/CPS), as required by the Mozilla Root Store Policy. The issue was raised by a Mozilla representative, noting that the current CP/CPS did not comply with the specified requirements. Amazon acknowledged the issue and committed to updating their documents by July 30, 2021. They subsequently published updated CP and CPS documents on July 23, 2021, which addressed the issue. The bug was resolved as fixed after confirming the updates met compliance requirements.

Model: gpt-4o-mini Generated: 2026-06-13 15:27 UTC Revised: 2026-06-16 18:04 UTC Confidence: 0.85 26 comments
Chronology
  1. Amazon Trust Services published updated CP and CPS documents addressing the key compromise specification issue.
Thread Activity
  1. Mm representative — Raised the issue regarding the lack of key compromise methods in Amazon's CP/CPS.
  2. DigiCert — Acknowledged the bug and stated plans to fix it by July 30, 2021.
  3. DigiCert — Confirmed the publication of updated CP and CPS documents that addressed the issue.
  4. DigiCert — Requested to resolve the bug as fixed.
Participants
Mm representative DigiCert Mozilla representative Community commenter Kabelmail representative Thisisntrocket representative
Similar Local Cases
#1705480 RESOLVED Ca Documents Policy Document Issue Opened 2021-04-15 · Closed 2023-02-22 · 92% similar
SECOM: CP/CPS does not clearly specify domain validation methods
#1688215 RESOLVED Ca Documents Incident Policy Document Issue Opened 2021-01-22 · Closed 2023-02-22 · 85% similar
Camerfirma: CP/CPS of Intesa Sanpaolo Sub-CA is Non-Compliant
#1713978 RESOLVED Certificate Misissuance Opened 2021-06-02 · Closed 2023-02-22 · 79% similar
Amazon Trust Services: Forbidden Domain Validation Method 3.2.2.4.6
#1693930 RESOLVED Policy Document Issue Opened 2021-02-20 · Closed 2023-02-22 · 77% similar
Microsoft PKI Services: Policy Documentation, Failure to update Subscriber Certificate Max Validity Period
#1596949 RESOLVED Ca Documents Policy Document Issue Self Reported Incident Opened 2019-11-15 · Closed 2023-02-22 · 77% similar
FNMT: CP/CPS lack CAA processing details
#1688382 RESOLVED Ca Documents Incident Policy Document Issue Opened 2021-01-23 · Closed 2023-02-22 · 73% similar
Camerfirma: No disclosure of verification sources
#1713668 RESOLVED Audit Finding Opened 2021-05-31 · Closed 2023-02-22 · 70% similar
Amazon Trust Services: ALV Errors
#1746945 RESOLVED Certificate Misissuance Self Reported Incident Opened 2021-12-20 · Closed 2023-02-22 · 69% similar
Amazon Trust Services: Missing CAA Check For Test Website Certificates

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action