AES-256 Encryption at Rest
Stored documents and signatures are encrypted using AES-256, helping keep their contents unreadable without the appropriate encryption keys.
Secure
Enterprise-grade security with a complete audit trail
6 capabilities
SignPaperless combines detailed audit trails, encryption, signer verification, and document-level security policies. Actions such as signing, editing, viewing, and sending are recorded with timestamps and user details. Documents are protected with AES-256 encryption at rest and TLS 1.2+ in transit. After all recipients finish signing, SignPaperless applies a platform digital seal and trusted timestamp to the completed PDF. Security policies let you enforce access limits, authentication, and retention rules, keeping workflows transparent, traceable, and ready for review.
Stored documents and signatures are encrypted using AES-256, helping keep their contents unreadable without the appropriate encryption keys.
Connections to SignPaperless use TLS 1.2 or higher, helping protect documents and account data while they move between a user's device and the platform.
After all recipients finish signing, SignPaperless applies a PKI-based digital seal and trusted timestamp to the completed PDF. PAdES and Long-Term Validation data help recipients verify the platform certificate and document integrity.
Every action, whether a field change or a signature, is logged with a timestamp and the user's details, so a document's history is fully traceable. When a legal or compliance question comes up, the trail is already there.
Watch user actions across the system, from login attempts to template sends to edits and more, to catch anything unusual or unauthorized. For a security-minded team, that visibility is essential.
Set the rules for access, downloads, authentication, and retention across your apps, and enforce them firmly. Sensitive information stays in front of only the people who should see it.
Set access and retention rules, run verification where required, and pull a timestamped record when a reviewer or auditor asks.
Define who can access documents, whether downloads are allowed, and how long records are kept. Policies apply consistently across your applications.
Require email confirmation or OTP on sensitive templates and envelopes. Identity checks are logged along with the rest of the activity.
Use the platform-applied digital seal, trusted timestamp, and validation data to check the platform certificate and integrity of the completed PDF.
Open the history on a document or user to see views, edits, signatures, and logins. Each entry includes a timestamp and who performed the action.
When legal, HR, or a client asks for proof, export or walk the audit trail that shows how the document was sent, viewed, and signed.
Straight answers about audit trails, signer verification, encryption, security policies, and how completed records are protected.
Yes. Signatures captured through SignPaperless are designed to meet requirements under the ESIGN Act and UETA for most business agreements. Each completed document includes a timestamped audit trail.
It records actions such as sending, viewing, signing, and declining, along with timestamps and user details. You can trace who did what and when on a given document.
After all recipients finish signing, SignPaperless applies a platform digital seal and trusted timestamp to the completed PDF. PAdES and Long-Term Validation data help recipients verify the platform certificate and document integrity in Adobe Acrobat and Reader. Individual signing events are documented separately in the audit trail.
Yes. Security policies let you limit downloads, mask fields, and control who can view or edit documents at the app and document level.
They show user actions across the system—logins, sends, edits, and more—so admins can spot unusual activity and support internal security reviews.
Didn't find your question? Ask us directly
More capabilities that pair well with Compliance