← All DigiCert certificates
Root Certificate

DigiCert Global Root CA

DigiCert
Browser Trust
Apple
Apple
Included
CCADB status only
Chrome
Chrome
Removed
No direct match
Microsoft
Microsoft
Included
Not directly listed
Mozilla
Mozilla
Included
Not directly listed
Trust Bits (root)
Server AuthenticationClient AuthenticationSecure EmailTime Stamping
Certificate Details
Record Type
Root Certificate
SHA-256
4348A0E9444C78CB265E058D5E8944B4D84F9662BD26DB257F8934A443C70161
Parent SHA-256
Valid From (GMT)
2006.11.10
Valid To (GMT)
2031.11.10
AKI
A95QNVbRTLtm8KPiGxvDl7I90VU=
SKI
A95QNVbRTLtm8KPiGxvDl7I90VU=
Operated By
Constrained
False
Revocation
Salesforce ID
001o000000HshEWAAZ
Capabilities
EV OIDs
2.23.140.1.3; 2.16.840.1.114412.2.1
Status of Root
Apple
Included
Google Chrome
Removed
Microsoft
Included
Mozilla
Included
TLSTLS EVCode SigningS/MIME
CAA Identifiers
Recognized CAA issuer identifiers published by CCADB for this CA certificate.
Not disclosed in CCADB
No recognized CAA issuer identifier was found for this CA certificate. CAs are expected to disclose CAA identifiers to CCADB when applicable.
Audit
Audit Firm
BDO International Limited
Firm Location
United States
Same as Parent
false
Standard
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
NetSec
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
TLS BR
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
TLS EVG
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
Code Signing
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
S/MIME BR
Audit URL
Type
WebTrust
Statement
2025.11.21
Period
2024.09.01 – 2025.08.31
Policy & Documentation
CP URL
CP Effective
CPS URL
CPS Effective
CP/CPS Statement
MD/AsciiDoc URL
Policy OIDs
Certificate X.509 certificatePolicies · cryptographic fact
No certificatePolicies extension in certificate
CCADB EV OIDs for Root Cert · administrative declaration
CA/B EV CS2.23.140.1.32.16.840.1.114412.2.1
Comparison
CCADB declares policy OIDs but certificate has none
Marked TLS EV Capable in CCADB but certificate has no policy OIDs
Chain Validation
No parent certificate in CCADB — chain lint requires issuer
Infrastructure
CRL (Full)
CRL (Parts)
ACME DV
ACME OV
ACME EV
Test (Valid)
Test (Expired)
Test (Revoked)
Certificate (PEM)

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action