Reference Source

The Chrome Root Program will phase-out PKI hierarchies found in violation of subordinate CA extendedKeyUsage requirements.

What is the effective date for The Chrome Root Program will phase-out PKI hierarchies found in violation of subordinate CA extendedKeyUsage requirements.?

For The Chrome Root Program will phase-out PKI hierarchies found in violation of subordinate CA extendedKeyUsage requirements., effective date is 2026-06-15; authority is Google Chrome Root Program; scope is CAs included in the Chrome Root Store, recorded from its source on 2026-08-05.

Beginning June 15, 2026 , the Chrome Root Program will phase-out PKI hierarchies found in violation of the below requirements.

googlechrome.github.io, retrieved 2026-08-05

2026-06-15
The date this requirement takes effect, as printed in the issuing programme's own effective-date table. Verified against the passage quoted below.
Sourcegooglechrome.github.io
Verified
Review by
DatasetTLS certificate and CA requirement effective dates (CA/Browser Forum, Chrome, Mozilla)
Requirement
The Chrome Root Program will phase-out PKI hierarchies found in violation of subordinate CA extendedKeyUsage requirements.
Effective date
2026-06-15
Authority
Google Chrome Root Program our reading
Scope
CAs included in the Chrome Root Store our reading

Values marked our reading are our classification of what the source says — the source does not print them in those words. The quote below is the evidence for each one; judge it yourself.

Source

Last verified against source: . Due for re-check by . This page as Markdown · OKF bundle · full dataset as JSON.

How long can a TLS/SSL certificate be valid — and when does the maximum drop?Find the maximum certificate lifetime on any date, and the deadline that lands next.
This one changes, and we watch it.TLS certificate and CA requirement effective dates (CA/Browser Forum, Chrome, Mozilla) is re-read on a schedule and every change is dated. Subscribe: Atom feed · JSON · what has changed so far.