# # ♻ @lnxw48 What I understand is that any CA can issue certificates for any domain at any time. One corrupt CA and you can never know whether a “secure” certificate actually represents the intended server.