Skip to main content

Public transparency log

Every receipt, on the record

Every CertNode receipt is appended to a public, append-only log (the same RFC 6962 structure browsers use for TLS certificates). Once a receipt is in, it cannot be quietly removed or rewritten, not even by us. This page shows the log's live signed head.

9,151

receipts sealed in the log

Root hash

47725fef8281dfc6bda8eced8066080d244cb1bb965a658e9f47acd319283286

Signed head issued

8/25/2026, 11:01:10 AM UTC

Signing key

certnode-prod-2026-02

Check it yourself

  • The raw signed tree head is public JSON at /api/transparency/sth. It is signed with ES256 (key above), timestamped with two independent RFC 3161 authorities, and anchored to Bitcoin via OpenTimestamps.
  • Any individual receipt can be verified at /verify with no account, or fully offline with the open @certnode/verify package.
  • Each head commits to the previous one (prev size 9,149), so history can't be rewritten without the chain visibly breaking.

Plainly: you don't have to trust CertNode. The log, the signatures, the timestamps, and the Bitcoin anchor are all checkable by you or anyone you're arguing with.