Public transparency log
Every receipt, on the record
Every CertNode receipt is appended to a public, append-only log (the same RFC 6962 structure browsers use for TLS certificates). Once a receipt is in, it cannot be quietly removed or rewritten, not even by us. This page shows the log's live signed head.
9,581
receipts sealed in the log
Root hash
1a1fa72c59f5d81dbca5a540fe06b227052b3e5c0e59ab06444731f6f9c6b513
Signed head issued
10/3/2026, 7:00:12 AM UTC
Signing key
certnode-prod-2026-02
Check it yourself
- The raw signed tree head is public JSON at /api/transparency/sth. It is signed with ES256 (key above), timestamped with two independent RFC 3161 authorities, and anchored to Bitcoin via OpenTimestamps.
- Any individual receipt can be verified at /verify with no account, or fully offline with the open
@certnode/verifypackage. - Each head commits to the previous one (prev size 9,579), so history can't be rewritten without the chain visibly breaking.
Plainly: you don't have to trust CertNode. The log, the signatures, the timestamps, and the Bitcoin anchor are all checkable by you or anyone you're arguing with.