Android 17 enables certificate transparency by default, breaking the ability to use custom certificate authorities for traffic interception—a critical practice for security research, privacy testing, and app debugging. This continues Android's multi-year trend of restricting user control over certificate trust, making it nearly impossible for technical users to inspect encrypted app traffic without rooting their devices.