← GoDaddy cases
Bugzilla #1924992 Incident

GoDaddy: Does not provide a method for domain owners to revoke their certificates

RESOLVED FIXED GoDaddy
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

The case involves GoDaddy's lack of a clear method for domain owners to revoke their certificates. A user reported this issue, stating that the certificates were shared with other domains, complicating the revocation process. GoDaddy responded by referencing their Certificate Policy/Certification Practice Statement (CP/CPS), which outlines revocation procedures. They acknowledged the need for clarity in their documentation and committed to updating the language in their CP/CPS. The issue was resolved with the release of version 5.02 of their CP/CPS, which improved the clarity of the revocation process.

Model: gpt-4o-mini Generated: 2026-06-13 21:34 UTC Revised: 2026-06-16 18:52 UTC Confidence: 0.85 17 comments
Chronology
  1. GoDaddy updated their CP/CPS to clarify certificate revocation practices.
Thread Activity
  1. Duck representative — Reported that GoDaddy does not provide a method for domain owners to revoke their certificates.
  2. GoDaddy — Responded that revocation options are defined in their CP/CPS.
  3. GoDaddy — Announced the completion of updates to the CP/CPS regarding revocation.
Participants
Duck representative GoDaddy Mozilla representative Internet Security Research Group Community commenter
Similar Local Cases
#1942241 RESOLVED Incident Opened 2025-01-17 · Closed 2025-05-13 · 90% similar
GoDaddy: Revocation process is unusable due to contact address not accepting attachments
#1909948 RESOLVED Incident Opened 2024-07-25 · Closed 2024-10-31 · 85% similar
GoDaddy: Edge Case for Data Reuse Outside of Timeframes
#1533774 RESOLVED Incident Opened 2019-03-08 · Closed 2023-02-22 · 78% similar
GoDaddy: Insufficient serial number entropy
#1866448 RESOLVED Certificate Misissuance Incident Opened 2023-11-24 · Closed 2024-02-14 · 74% similar
NAVER Cloud Trust Services: DV Certificate issued with improperly validated
#1911335 RESOLVED Delayed Revocation Incident Opened 2024-08-02 · Closed 2025-08-11 · 74% similar
PKIoverheid: Delayed S/MIME audit report for MoD PKIoverheid G3 CA
#1888371 RESOLVED Incident Opened 2024-03-28 · Closed 2024-07-09 · 74% similar
e-commerce monitoring GmbH: CRLs with mismatched issuer
#1949203 RESOLVED Incident Opened 2025-02-19 · Closed 2025-04-03 · 74% similar
Actalis: two CAs with the same CRLDP
#1869056 RESOLVED Incident Opened 2023-12-08 · Closed 2024-02-02 · 72% similar
Sectigo: Inadequate vulnerability scanning and patching

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action