# Google Trust Services — TLS certificate maximum validity by Certificate Authority: what each CA actually issues today For Google Trust Services, maximum validity (days) is 93; still issuing tls certificates is yes; notes is Per TLS CP/CPS section 6.3.2. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds, recorded from its source on 2026-08-18. - **Certificate Authority:** Google Trust Services _(verified: appears in the quote below)_ - **Maximum validity (days):** 93 _(verified: appears in the quote below)_ - **Still issuing TLS certificates:** yes _(our reading, not quoted from the source)_ - **Notes:** Per TLS CP/CPS section 6.3.2. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds. _(our reading, not quoted from the source)_ - **Profile or Product:** SXG subscriber _(per pki.goog, not stated by the source above)_ ## What the source says > Leaf Certificates are issued for a period of 93 days or less. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds. ## Sources disagree More than one authority states this, and they do not state the same thing. Both are reproduced with the source each came from. ### Maximum validity (days) pki.goog says maximum validity (days) is **93**, as of 2026-08-18. > Leaf Certificates are issued for a period of 93 days or less. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds. Source: https://pki.goog/repo/cp-cps-tls/6.2/GTS-CP-CPS-TLS.html pki.goog says maximum validity (days) is **48**, as of 2026-08-18. > SXG subscriber certificates are issued for a period of 48 days or less. Source: https://pki.goog/repo/cp-cps-tls/6.2/GTS-CP-CPS-TLS.html ### Notes pki.goog says notes is **Per TLS CP/CPS section 6.3.2. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds.**, as of 2026-08-18. > Leaf Certificates are issued for a period of 93 days or less. SXG subscriber certificates are issued for a period of 48 days or less. A day is measured as 86,400 seconds. Source: https://pki.goog/repo/cp-cps-tls/6.2/GTS-CP-CPS-TLS.html pki.goog says notes is **Signed Exchange (SXG) subscriber certificates, per TLS CP/CPS section 6.3.2.**, as of 2026-08-18. > SXG subscriber certificates are issued for a period of 48 days or less. Source: https://pki.goog/repo/cp-cps-tls/6.2/GTS-CP-CPS-TLS.html ## Source - https://pki.goog/repo/cp-cps-tls/6.2/GTS-CP-CPS-TLS.html Last verified: 2026-08-18. Review by: 2026-09-17. Part of [TLS certificate maximum validity by Certificate Authority: what each CA actually issues today](https://referencesource.org/ca-issuance-validity/).