@easytarget @mirabilos No. The removal of the ClientAuth EKU (Extended Key Usage) in newly issued certificates happens everywhere, not only at LetsEncrypt. It is required by Google. Certificates with ClientAuth will not be trusted by Google from mid 2026.