Skip to main content

ZetaCert Research

Research, audit, methodology

The ZetaCert Research team publishes what it finds in the open. Three free artefacts: a public audit tool, whitepapers, and the detector source code.

Our research principles

  • ·Reproducibility first. Every published finding can be replayed end-to-end from public Certificate Transparency.
  • ·Strict coordinated disclosure. No vendor or operator marker is unmasked before its agreed grace period expires.
  • ·Negative results published. What we looked for and did not find counts as much as what we did — and bounds our positive claims.
  • ·No marketing-grade cryptography. If a claim is not publicly verifiable, it does not appear in our publications.

A methodological question, a finding to report?

Our coordinated-disclosure channel is open to researchers, CERTs, vendors and operators.