TRUE Sign
Security

Security first.

Your agreements are business critical. We protect them with encryption, European infrastructure and a proof that does not depend on anyone taking our word for it.

Proof over promises

Certificates ask you to trust the issuer. A public blockchain lets anyone check for themselves. Every sealed document carries evidence that is verifiable without TRUE.

Privacy by design

We collect what the signature needs, nothing more. Documents are private to the parties, stored in the EU, and covered by GDPR and our Data Processing Agreement.

Transparency you can check

Every step is logged on the document: sent, viewed, signed, sealed. The event trail follows the file, and verification is open to anyone, free, no account.

What happens to your document

Encrypted transfer

Your document travels over TLS from the moment you upload it.

Private while signing

Only invited signers reach the document, through personal links.

Sealed

When the last party signs, the PDF gets its SHA 256 fingerprint.

Anchored

The fingerprint is written to a public blockchain, beyond alteration.

Verifiable forever

Anyone can verify the sealed document. Free, no account, independent of us.

Built in, not bolted on

Passwordless login

You sign in with a one time email link. No password to leak, phish or reuse.

Complete event log

Created, sent, viewed, signed, sealed. Every step timestamped on the document.

EU data residency

Documents live on European servers in Germany and Finland, under European law.

Open verification

Anyone can check a sealed document with TRUE Verify. Free, no account needed.

Independent proof

The blockchain anchor works without TRUE. Your evidence does not depend on our existence.

eIDAS validity

Electronic signatures are legally binding across the EU under regulation 910/2014.

Encryption alone vs the TRUE blockchain seal

Security featuresEncryption aloneBlockchain seal
Proves nothing changed after signingβœ—βœ“
Proof expires with keys and certificatesYesNever
Anyone can verify independentlyβœ—βœ“
Can be altered silentlyPossibleNot even by us

Compliance

GDPREU data protection, DPA included
eIDASLegal validity across the EU
EU residencyData stored in Germany and Finland

Security questions

On servers within the EU, in Germany and Finland. Documents never leave European infrastructure.

Only the document fingerprint, a SHA 256 hash. The content itself never touches the chain, so your agreement stays private while its proof is public.

The proof survives. The fingerprint lives on a public blockchain and the sealed PDF carries its evidence, so authenticity can be checked without us.

Feeling paranoid? Good. Give it a test!

Try it as a signerTalk to us