CodeSigning

This is how it used to be. I’m not certain it works anymore. With my previous certificate, my reputation was built within hours and for the next 3 years, every build published with my certificate was automatically trusted. My understanding is this is how it is (or was) intended to work.

With my most recent certificate, after 3 months, I still hadn’t built the reputation. I did get plenty of tickets about it, and Microsoft intentionally makes the UI for bypassing the warning as obtuse as possible. It’s not discoverable at all.

I had already spent $600 on 10 years of an OV certificate, but I cut my losses and moved to Azure Trusted Signing. OV certificates just aren’t worth it anymore.

2 Likes