← Disig, a.s. cases
Bugzilla #2008972 Self Reported Incident

Disig: Delayed Full Incident Report

RESOLVED FIXED Disig, a.s.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case concerns Disig, a.s. (CA Owner CCADB unique ID A000008) disclosing that it delayed posting its Full Incident Report. The preliminary incident report was referenced as being disclosed in bug 2007132, and the Full Incident Report submission was delayed. The thread states that the non-compliance period ran from 2026-01-02 to 2026-01-07, with the Full Incident Report submitted on 2026-01-07. The reported impact was that no certificate issuance, revocation, or overall CA operations were affected, and that no certificate misissuance or ecosystem risk occurred; the delay affected only the timing of the Full Incident Report submission. The stated contributing factors were staffing issues due to pre-planned vacations during the holiday season and a high number of bank holidays. The CA reported remediation including implementing a holiday coverage plan to ensure compliance and technical coverage during holiday or non-standard working periods, and requested closure after completing the action items.

Model: gpt-5.4-nano Generated: 2026-06-13 21:25 UTC Revised: 2026-06-16 18:40 UTC Confidence: 0.90 4 comments
Chronology
  1. Disig’s incident reporting non-compliance period began (Full Incident Report not yet submitted).
  2. Disig identified the incident reporting non-compliance.
  3. Disig submitted the Full Incident Report and the non-compliance period ended.
  4. Disig posted the report closure summary and requested bug closure.
Thread Activity
  1. Disig, a.s. — Posted a preliminary incident report noting delayed posting of the Full Incident Report and referenced CCADB Incident Reporting Guidelines v3.1 and bug 2007132 as the source of disclosure.
  2. Disig, a.s. — Posted the Full Incident Report, stating the delay window (2026-01-02 to 2026-01-07), the contributing factors (vacations and holiday/bank holidays), and that no certificate/operations impact occurred.
  3. Disig, a.s. — Posted a report closure summary stating the Full Incident Report was posted on 2026-01-07, described remediation via a holiday coverage plan, and requested closure after completing action items.
  4. CCADB representative — Issued a final call for comments and indicated the bug would be closed approximately 2026-01-27 if no further input was received.
Participants
Disig, a.s. CCADB representative
Related Bugzilla IDs Mentioned
Similar Local Cases
#2007132 RESOLVED Certificate Misissuance Self Reported Incident Opened 2025-12-19 · Closed 2026-02-11 · 96% similar
Disig: Certificates with invalid embedded SCT signature
#2025595 RESOLVED Self Reported Incident Incident Opened 2026-03-23 · Closed 2026-05-18 · 71% similar
IdenTrust: Delay in updating a Bug 2014609 - Next update
#2043140 RESOLVED Self Reported Incident Opened 2026-05-28 · Closed 2026-06-16 · 71% similar
Certigna: Delay in reporting an audit finding
#2026452 RESOLVED Self Reported Incident Audit Delay Opened 2026-03-26 · Closed 2026-04-22 · 70% similar
Microsoft PKI Services: Failure to publish Full Incident Report for Bugzilla 2021175 within 14 days
#1991558 RESOLVED Self Reported Incident Opened 2025-09-29 · Closed 2026-01-15 · 70% similar
IdenTrust: TLS self audit testing below 3%
#2004492 RESOLVED Self Reported Incident Policy Document Issue Opened 2025-12-05 · Closed 2026-02-05 · 70% similar
IdenTrust: CA Certificate not published in DER Encoded Format
#2025917 RESOLVED Self Reported Incident Audit Delay Opened 2026-03-24 · Closed 2026-05-18 · 70% similar
IdenTrust: Full Incident Report for bug 2016585 was not published within 14 days of discovering the issue
#2004845 RESOLVED Self Reported Incident Opened 2025-12-09 · Closed 2026-02-11 · 70% similar
GoDaddy: CA Certificates Published in PEM format

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action