
Certificate Transparency (CT) was designed to make certificate issuance public and auditable. Every publicly trusted certificate appears in one or more CT logs. That visibility is essential — but it is not the same as monitoring.
A medium-sized organisation might see thousands of certificate events per week across owned domains and cloud estates. Manual log review does not scale. Teams either ignore CT entirely or burn analyst time on expected renewals.
Effective monitoring answers a narrower question: did something happen that violates our policy or history?
Good Roots Work focuses alerts on these anomalies, not on every routine renewal.