Invalid TLS certificate for some new instances in US region

Incident Report for PowerSync

Resolved

Since 2026-03-22, some new instances in the US region failed to configure the correct TLS certificate. These instances instead received the `Kubernetes Ingress Controller Fake Certificate`, which causes all connections to the instance to fail.

This specifically affected some new instances, as well as some instances that were previously stopped/deprovisioned, then deployed again. Running instances were not affected.

The issue is resolved, and all instances should be served using the correct TLS certificate now.
Posted Mar 23, 2026 - 09:45 UTC