Skip to main content

Revoke a code signing certificate

Revoke a Code Signing or EV Code Signing certificate if it is no longer needed, the hardware token has been lost, or the private key has been compromised. Revoking a certificate cannot be undone.

Important

Revoking a code signing or EV code signing certificate invalidates all code signed by that certificate, including timestamped signatures. Users downloading that software may see a trust warning. To ensure your code remains trusted, resign all code signed by the revoked certificate using a valid certificate.

The certificate revocation process works as follows:

  1. Submit a request to revoke the certificate.

  2. A CertCentral administrator approves the revocation request.

  3. DigiCert revokes the certificate.

See Submit a request to revoke a Code Signing or EV Code Signing certificate.