Hi everyone,
We're excited to announce two new Static Certificate Transparency logs operated by GoDaddy, built on the Sunlight implementation.
Staging logs (Peridot):
Production logs (Aquamarine):
Both logs accept all publicly trusted WebPKI roots (all roots in the Google, Apple, and Mozilla root programs).
Peridot is our staging environment — it currently accepts testing roots, and we're happy to add more. We'd welcome monitors and CAs to test against it and share any feedback.
Aquamarine is our production log, which we intend to submit for inclusion in the approved log lists for Google and Apple following validation of Peridot. We are internally targeting 99.9% uptime.
We plan to submit both logs for inclusion once initial testing is complete. Please note that GoDaddy is already submitting all newly issued certificates to the production log (Aquamarine). Feedback is very welcome — feel free to reach out at ct...@godaddy.com or find us on the Transparency Dev Slack.
Best,
Lee Sautia
GoDaddy
Hi everyone,
Following up on our earlier announcement of GoDaddy Static CT logs, we're also making available Verified Mark Certificate (VMC) specific Static CT logs built on the Sunlight implementation.
Staging VMC logs (Emerald):
Production VMC logs (Garnet):
These logs are for Verified Mark Certificates, not TLS server authentication certificates. They require the VMC EKU:
1.3.6.1.5.5.7.3.31
At minimum we will accept all BIMI approved roots:
https://bimigroup.org/vmc-issuers/
Emerald is our staging environment. Garnet is our production VMC log set. The logs use 60-second MMDs and are temporally sharded across 2026h2, 2027h1, and 2027h2.
Please note that these are mark-certificate-only logs. They reject ordinary TLS certificates, submissions without the VMC EKU, certificates outside the configured shard interval, and chains outside the accepted mark root set.
Best,
Lee Sautia | GoDaddy