components can call get_trusted_certs