Stay up to date with the latest features, improvements, and updates to TigerTrust
Released on August 28, 2026
Cryptographically gate every certificate issuance on hardware-rooted proof of device state. TigerTrust now verifies TPM2_Quote over PCRs, confirms Credential Activation against the manufacturer EK, and binds the CSR public key to the TPM via TPM2_Certify — closing every gap that shared secrets left open.
Two-tier device identity for industrial IoT: chain manufacturer-issued IDevIDs to short-lived LDevIDs issued by your workspace CA. Ship a million gateways with hardware-rooted identity — no manual keying, no shared bootstrap secrets.
Extend attestation-gated issuance beyond TPMs. TigerTrust now verifies AMD SEV-SNP and Intel TDX quotes alongside TPM 2.0, so workloads inside encrypted VMs can prove their launch measurement before they get a certificate.
After successful Credential Activation, TigerTrust signs an X.509 certificate to the enrolled Attestation Key with the TCG-KP-AIK EKU. Downstream services validate AK identity via standard cert-path validation — no runtime dependency on our enrollment API.
Released on July 15, 2026
Mintlify-powered developer docs covering every product and every API. 60+ pages organised by feature area, with structured schemas for Product, Solution, Guide, and Glossary types — ready for AI agents to index.
Deep-dive technical guides at tigertrust.io/guides — starting with a 5,000-word Complete Guide to TPM 2.0 Certificate Attestation. Editorial writing paired with concrete implementation details and executable examples.
Plain-language reference at /glossary covering every term in the machine-identity space: PKI, TPM 2.0, Remote Attestation, PCR, Endorsement Key, Credential Activation, DevID, PQC, SPIFFE / SPIRE, and more.
Fair, side-by-side comparisons vs HashiCorp Vault, AWS Private CA, Azure Key Vault, Smallstep, and Google Certificate Manager — each with capability tables, migration steps, and integration deltas.
Released on February 6, 2026
Launch your own private Certificate Authority in minutes. Full PKI infrastructure with Root and Intermediate CAs, CRL/OCSP responders, and HSM support—all managed through our intuitive dashboard or API.
Deploy TigerTrust in your own data center with full air-gapped support. Complete feature parity with cloud offering, including Kubernetes operators and Docker Compose configurations.
Comprehensive code signing workflow with secure key storage, timestamping integration, and automated signing pipelines for Windows Authenticode, macOS, JAR, and container images.
New agent architecture with mutual TLS authentication, certificate pinning, and secure task queuing via NATS JetStream. Agents now support offline operation with local task caching.
Released on November 15, 2025
Introducing our new AI engine that analyzes certificate usage patterns and provides intelligent recommendations for optimization. Get insights on certificate lifecycle trends, anomaly detection, and predictive expiration alerts.
Full support for post-quantum cryptographic algorithms including CRYSTALS-Kyber and CRYSTALS-Dilithium. Prepare your infrastructure for the quantum computing era with hybrid certificate modes.
Completely rewritten discovery engine with parallel scanning capabilities. Network scans now complete in half the time with improved accuracy and reduced false positives.
New granular permission model with 40+ customizable roles. Implement precise access controls with attribute-based access control (ABAC) support.
Released on October 28, 2025
Native Kubernetes operator for automated certificate management. Deploy as a Helm chart and manage all your K8s certificates through custom resource definitions (CRDs).
New webhook events for certificate lifecycle operations with payload customization, retry logic, and signature verification for enhanced security.
Released on October 5, 2025
Unified dashboard to manage certificates across AWS ACM, Azure Key Vault, and Google Certificate Manager from a single pane of glass. Includes automated sync and drift detection.
Real-time monitoring of Certificate Transparency logs to detect unauthorized certificate issuance for your domains. Get instant alerts for rogue certificates.
New GraphQL API alongside REST for more efficient data fetching. Query exactly what you need with powerful filtering and relationship traversal.
Released on September 12, 2025
Define and enforce custom certificate policies across your organization. Set rules for key algorithms, validity periods, certificate authorities, and more with automatic compliance checking.
Comprehensive SSH key lifecycle management including discovery, rotation, and attestation. Supports OpenSSH, PuTTY, and SSH.com formats.
Released on August 18, 2025
Live monitoring dashboard with WebSocket connections for instant updates. See certificate changes, renewals, and alerts in real-time without page refreshes.
Integrated ZTNA capabilities with continuous verification and context-aware access policies. Ensure secure access to certificate management operations.
Released on July 25, 2025
Visual workflow builder for complex certificate automation scenarios. Create custom workflows with conditional logic, approval gates, and integrations.
A sneak peek at what we're shipping over the next two quarters.