The latest news and insights from Google on security and safety on the Internet Unknown said... Looking at a large CA group (InCommon), their CA vendor (AddTrust via Comodo) is both root and cert signed SHA-1, and they issue 3-year certs. That means all certs issued after January 1st 2014 will be marked red in Q1 2015, since most were issued as 3-year certs. Assuming the vendor can't get a fix in

