HomeProductsAdvanced Electronic Signatures
Global Digital Signature

Court-ready digital signatures. From 179 countries.

eIDAS Advanced Electronic Signatures (AdES) backed by passport-verified identity. Not a click-to-sign — a cryptographic commitment linked to a verified person, with split-key protection and a tamper-evident audit trail. Sufficient for 90%+ of business use cases.

For: Legal · Finance · Procurement · Logistics · Any platform where users need to sign documents with provable identity.

Request Demo Integration Guide
eIDAS signature levels
SES — Simple Click-to-sign, checkbox, email
AdES — Advanced ✓ YOU ARE HERE Passport-verified · Cryptographic
QES — Qualified On roadmap (QTSP 2027)
AdES is sufficient for 90%+ of business documents. QES is rarely required by law.
Understanding signature levels

Three levels. One framework. Choose wisely.

eIDAS defines three levels of electronic signatures. Each has different legal standing, security, and cost. Most businesses over-buy QES when AdES would suffice — or under-buy SES when they need more.

SES — Simple AdES — Advanced QES — Qualified
Identity verified?NoYes — passportYes — QTSP
Tamper-evident?NoYesYes
Uniquely linked to signer?NoYes — split-keyYes — QSCD
= Handwritten signature?NoNo*Yes
Court admissible?WeakStrong evidencePresumption of validity
Accepted across EU borders?Court decidesYes — cannot be refusedYes — automatic
Signers outside EU?Yes — 179 countriesNo — EU citizens only
Provider needs QTSP license?NoNoYes — audited & certified

* AdES is court-admissible with strong evidentiary weight under eIDAS non-discrimination principle. Courts cannot reject it solely for being electronic. QES adds automatic presumption of validity — useful, but rarely legally required.

The practical truth about signature levels

When is AdES enough? When do you need QES?

Use AdES for — most business

Commercial contracts & supplier agreements
NDAs, SOWs & service agreements
Employment agreements & HR documents
Procurement & purchase orders
Insurance claims & financial approvals
Cross-border documents with non-EU parties
Compliance records & audit trails
🏛️

Use QES for — specific law

Public procurement bids that require QES
Notarial / real estate transactions
Regulatory submissions to EU authorities
High-value contracts where max legal certainty justifies cost
→ IdentiGate QES: on roadmap with QTSP certification (2027)
Why IdentiGate AdES
🛂

Passport-anchored, not click-to-sign

Every AdES is backed by a passport-verified identity — NFC chip data, biometric face match, cryptographic key. Not a DocuSign click. Not a typed name. A provable commitment by a verified person.

🌍

179 countries — not just EU27

QES requires an EU-recognized QTSP — effectively limiting it to EU signers. IdentiGate AdES works for any passport holder worldwide. A Turkish driver, a Moroccan supplier, a Brazilian partner — all can sign.

🔐

Split-key: non-repudiation by architecture

The user's private key is split between their device and our servers. Neither side can sign alone. "I didn't sign that" becomes cryptographically impossible to claim if both halves were activated.

🕐

Timestamped + evidence trail

Every signature includes a qualified timestamp and a sealed evidence record: who signed, what version, when, from which device. Court-ready chain of evidence that travels with the document.

📋

PAdES, CAdES, ASiC-E formats

Sign PDFs (PAdES), XML (XAdES), any binary (CAdES), or create standard EU containers (ASiC-E). Long-term validation (LTV) data embedded for verification years later.

REST API — sign from your platform

Your platform triggers signing via API. The user confirms with PIN2 on their device. You receive the signed document with embedded certificate and timestamp. No redirect, no separate app needed.

How signing works

Your platform sends the document. The user signs with PIN2.

The user already has an IdentiGate identity (one-time setup, 90 seconds). Signing is the same credential — different PIN.

1

Platform sends document

Your platform calls the IdentiGate API with the document hash (or full document). The API creates a signing request linked to the user's verified identity.

2

User reviews & confirms

The user's IdentiGate app shows what they're signing, who's asking, and the document details. The user reviews and confirms with PIN2 — the signing PIN.

3

Split-key signature created

Both key halves combine to create the cryptographic signature. A qualified timestamp is applied. OCSP confirms the certificate was valid at the moment of signing. Evidence record is sealed.

4

Signed document returned ✓

Your platform receives the signed document with embedded AdES signature, X.509 certificate, timestamp, and OCSP response. Court-ready. Verifiable. Tamper-evident.

PIN1 = authentication. PIN2 = signing. Same identity, same device, same integration. Two separate authorization levels for different risk profiles.
What makes this different

Stronger than click-to-sign. More global than national eIDs.

The global signing gap that IdentiGate fills

Click-to-sign platforms (DocuSign): fast and easy, but legally weak. No verified identity behind the signature. Essentially SES level — the signer could be anyone with access to the email.

National eID solutions: QES with strong identity — but each works only in its own country. A Belgian can sign with their eID, a Swede with theirs. A Turkish driver? No option.

IdentiGate: passport-backed AdES that works for anyone from 179 countries. Stronger than click-to-sign (real identity, real crypto). More global than any national eID (not limited to one country's citizens).

DocuSignSES level · global · no verified identity
National eIDsQES level · 1 country each
EUDI Wallet (2026–27)QES level · EU27 only · coming soon
IdentiGateAdES level · 179 countries · passport-backed
QES on roadmap (QTSP certification 2027)
For your platform

One API for identity, authentication, AND signing.

Same integration, same user credential. Your users verify once, then authenticate with PIN1 and sign with PIN2. No separate signing vendor.

Integrate once

Same REST API as identity and authentication. Add signing to your existing IdentiGate integration with minimal additional code. Sandbox available.

💰

Transaction-based pricing

Pay per signature. No setup fees, no license costs. The same pricing model as verification and authentication. Predictable, scalable.

📁

All standard formats

PAdES (PDF), CAdES (binary), XAdES (XML), ASiC-E (container). OCSP + timestamp included. Long-term validation embedded.

Get started

Resources for your team

Digital signatures that prove who signed. Globally.

20-minute demo: see passport-backed AdES signing — live, from a real device, across borders.

Request Demo All Products