Digital signing security

Reduce unnecessary trust. Reduce unnecessary custody. Make authority explicit.

SignumEra separates organizational identity, application authorization, external signer access, source-document authority, execution hashes, cryptographic confirmation, authenticated presence, append-only ceremony events, finalization and system-of-record delivery.

Key controls

Reduce implicit trust by making authority and state explicit.

Identity, document revision, signer access, presence, evidence and finalization are independently controlled and recorded rather than inferred from possession of an emailed link.

Microsoft Entra organizational identity

Use the identity system your enterprise already governs as the organizational authentication anchor.

Server-authoritative authorization

Rust—not menu visibility—enforces sensitive actions. Owner, Admin, Member and Auditor permissions remain application controls.

Private, role-scoped SignLinks

Each external recipient receives a path scoped to that recipient and role, not a shared generic signing URL.

FIDO2 / WebAuthn passkeys

Cryptographic, device-centric confirmation can strengthen signer and owner actions without making reusable passwords the trust anchor.

Resolved Execution Target

Before Prepare, resolve the source system, document identity, immutable revision marker such as version/eTag, execution content hash and resolution time. A changed source revision requires a new target.

Authoritative PDF integrity

Prepared/downloaded bytes are verified against the execution hash, the viewer exposes only the frozen target, and finalized output remains bound to the ceremony integrity chain.

Append-only ceremony events

Presence changes and material actions are recorded as append-only server events with timestamps and reason codes where applicable.

Reduced attack surface

Minimize unnecessary long-term document custody and keep the public signing layer focused on controlled execution.

Built in Gibraltar

Verified signing. Governed execution.

Minimize unnecessary long-term document custody and keep the public signing layer focused on controlled execution. Finalized documents and configured evidence return to the explicitly selected system of record. Identity, Teams or Zoom context does not create an additional storage destination.

Rock of Gibraltar in the SignumEra blue gradient

Low-friction adoption

Start with a real account. 20 signing credits. One year included.

Public Beta starts September 8th