AUDIT & COMPLIANCE

Audit trail & compliance

Every signature is backed by a complete audit trail, a tamper-evident certificate of completion, a SHA-256 and PAdES-B seal, and recognition under ESIGN, UETA, and eIDAS.

Certificate of completion
Mutual NDA
Sealing…
  1. Sentto Alex Rivera10:42
  2. Viewed192.0.2.41 · Chrome10:51
  3. SignedAlex Rivera · verified10:54
SHA-256 7a3f…c920PAdES-B · tamper-evident
Compliant & secure by designESIGNUETAeIDASHIPAA-eligible BAAGDPR DPAAES-256 · TLS 1.2+

Complete audit trail

Every event timestamped with IP, device, and method.

Certificate of completion

A tamper-evident PDF stapled to every envelope.

SHA-256 + PAdES-B seal

Cryptographic integrity, verifiable in any PDF reader.

Legally binding

Recognized under ESIGN, UETA, and eIDAS.

AUDIT TRAIL

Complete audit trail

Every action is timestamped on an append-only trail - sent, viewed, consent, identity verification, signed, sealed - with the IP, device, geolocation, and method behind each event.

  • Every event captured - Sent, viewed, consent, verified, signed, sealed
  • IP, device & geolocation - Recorded for each event
  • Append-only - Entries can be added, never altered
app.documentesign.com/documents/mutual-nda
Audit trailRecording
  1. Sentto Alex Rivera10:42
  2. Viewed192.0.2.41 · Chrome · Austin, US10:51
  3. ConsentESIGN disclosure accepted10:52
CERTIFICATE

Certificate of completion

When everyone signs, a separate tamper-evident PDF is stapled to the envelope: the document hash, every signer's details, the verification method, and the full event history.

  • Stapled to every envelope - A standalone certificate PDF on completion
  • Signer details & method - Who signed, how they were verified, and when
  • Document hash - The SHA-256 fingerprint of the signed file
documentesign.com/certificate/9f2a
Certificate of completion
Certificate of completion
Mutual NDA · 1 signer
SignedAlex Rivera · alex@acme.co
SHA-2567a3f…c920
Stapled to every completed envelope
SEAL

Tamper-evident seal

Each completed PDF carries a SHA-256 hash, an embedded PAdES-B signature, and an independent TSA timestamp. Any change after signing is immediately detectable - and anyone can verify it.

  • SHA-256 + PAdES-B - An embedded, cryptographic signature
  • TSA trusted timestamp - An independent timestamp authority
  • Verify anywhere - Valid in any PDF reader - no proprietary tool
Adobe Acrobat · Mutual NDA (signed).pdf
Verify the seal
Verifying signatures…
Alex Rivera
Verifiable in any PDF reader - no proprietary tool
LEGAL

Legally binding

Signatures meet the requirements of the U.S. ESIGN Act, UETA, and the EU eIDAS Simple Electronic Signature. Explicit signer consent is captured on every envelope.

  • ESIGN & UETA - U.S. federal and state electronic-signature law
  • eIDAS - EU Simple Electronic Signature
  • Consent captured - Explicit signer consent recorded per envelope
documentesign.com/legal
Legally binding
ESIGN
U.S. federal
UETA
U.S. state
eIDAS
European Union
Legally binding worldwide
THE WHOLE TOOLKIT

All the signing tools you need, in one place.

Document eSign gives you the complete toolkit to prepare, send, sign, manage, and audit documents with confidence.

22+ tools

Core signing

Route, send, and sign - sequential or parallel, with the controls demanding workflows need.

Sequential & parallel routingApprovers, viewers & CCAutomatic remindersScheduled sendIn-person signing (tablet)Redirect on completionCustom disclaimer noticeDocument expiry
3+ tools

Fields & forms

Capture far more than a signature, with validation enforced before a document can complete.

Standard field libraryCustom fields (conditional, validation)Signer attachmentsDraw / type / upload signatures
4+ tools

Templating & bulk send

Prepare a document once, reuse it forever, and send to hundreds from a single CSV.

Unlimited templatesShared team templatesPublic template share linksBulk send (CSV)
15+ tools

Security & audit

Identity controls at the bar your IT team sets, plus a tamper-evident record on every document.

Workspace 2FA enforcementIP restrictionsSSO + SCIMMultiple workspacesDocument sending policiesCertificate of completionSHA-256 + PAdES-B sealAppend-only audit trailAutomatic document deletionESIGN · UETA · eIDAS
6+ tools

Branding

Your logo, colour, sending domain, and signing page - your brand from first email to final seal.

Custom branding (logo + color)Custom email sending domainEmail template customizationBYO signing domain
6+ tools

Integrations & AI

Connect the storage and tools you already run on, plus practical, privacy-respecting AI.

Drive · Dropbox · OneDriveAutomatic cloud backupSlack notificationsAI assist
AUDIT-GRADE BY DEFAULT

Every document, verifiable and built to last.

A SHA-256 hash, an embedded PAdES-B signature, and a complete audit trail on every signed envelope - the proof your legal and IT teams need to say yes.

Start free, no card
Tamper-evident seal
PAdES-B signature, verifiable in any PDF reader.
Complete audit trail
IP, device, geolocation, and auth method on every event.
See how the audit trail works
FAQ

Common questions.

What is the audit trail?

An append-only record of every action on a document - sent, viewed, consent given, identity verified, signed, and sealed - each with a timestamp, IP, device, and the method used. Entries can be added but never altered.

What is the certificate of completion?

A separate, tamper-evident PDF stapled to every completed envelope. It includes the document's SHA-256 hash, each signer's details and verification method, and the full event history.

How do you prove a document wasn't changed after signing?

Each completed PDF carries a SHA-256 hash and an embedded PAdES-B signature with an independent TSA timestamp. If a single byte changes after signing, verification fails - and anyone can check it in a standard PDF reader.

Are Document eSign signatures legally binding?

Yes. They meet the requirements of the U.S. ESIGN Act, UETA, and the EU eIDAS Simple Electronic Signature, with explicit signer consent captured on every envelope.

Can I verify a signed PDF without your software?

Yes. The PAdES-B signature is a standard embedded signature, so any compliant PDF reader (such as Adobe Acrobat) can validate it - no proprietary tool required.

What does the audit trail capture about each signer?

The events they triggered, timestamps, IP address, device/user agent, approximate geolocation, and the authentication method used (consent, ID, PIN, or SMS one-time passcode).

Do you support HIPAA workflows?

A HIPAA-eligible Business Associate Agreement is available for healthcare teams. Reach out through the contact page and we'll set it up.

Is data encrypted?

Yes - documents are encrypted in transit with TLS 1.2+ and at rest with AES-256, and audit logs are append-only.

Live in under a minute

Ready to try it?

Create your free forever account, upload a document, and send it for signature in minutes. No credit card required.

Unlimited envelopes on Free Legally binding · global Audit trail on every document