WebPKI Observatory — Government Risk
30 government-operated or state-owned CAs hold trust store inclusion but account for only 0.07% of issuance, operating primarily for domestic infrastructure rather than public web traffic. These entities face heightened scrutiny over their trust store presence given state access to private keys and potential compelled misuse scenarios. Their minimal issuance share suggests browsers have largely contained exposure while maintaining diplomatic inclusion of sovereign operators.