Security

Last updated: August 22, 2026

Document Integrity

RootSign cryptographically seals every completed document using a digital signature standard (PAdES). This means:

On certificate trust: RootSign signs documents with its own certificate rather than one issued by a paid, publicly-trusted certificate authority. This means PDF readers will typically show the signature as "valid, but issuer not verified" rather than a fully green-checked trusted signature. This distinction matters only for verifying who sealed the document — it does not affect tamper-evidence. Any alteration after signing will still be detected and flagged, regardless of certificate trust status.