Skip to content
Security & Compliance

Your data deserves Swiss protection

actaSIGN stores all data exclusively in Switzerland — in an ISO 27001 certified data centre, without international hyperscalers. Compliant with ZertES, eIDAS, revDSG and GDPR.

100% Swiss

Hosting and data storage exclusively in Switzerland

ISO 27001

Certified data centre for maximum security

4 frameworks

ZertES, eIDAS, revDSG and GDPR compliant

Data protection and hosting

We take the protection of your data seriously. All documents and signature data are processed and stored in Switzerland.

Swiss data centre

All data is stored in an ISO 27001 certified data centre in Switzerland. No AWS, no Azure, no Google Cloud — no international hyperscalers.

Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Your documents are protected at all times.

Complete audit trail

Every signing process is fully logged: timestamp, IP address, identification proof. Tamper-proof and viewable at any time.

Long-term validation (LTV)

Signed documents remain cryptographically verifiable for years thanks to embedded validation information.

Compliance and regulation

actaSIGN meets the strictest regulatory requirements — in Switzerland and in the European Union.

ZertES

Swiss Federal Act on Electronic Signatures. The legal basis for qualified electronic signatures in Switzerland.

eIDAS

EU Regulation on electronic identification and trust services. Guarantees cross-border recognition of electronic signatures in the EU.

revDSG

Revised Swiss Data Protection Act. actaSIGN stores and processes all data in compliance with strict Swiss data protection requirements.

GDPR

General Data Protection Regulation. All processes are designed to fully meet GDPR requirements.

Authentication and access control

Multiple security layers protect your account and documents from unauthorised access.

Two-factor authentication

Protect your account with a second factor — via TOTP app or SMS. Recommended as mandatory for administrators.

SSO / OpenID Connect

Single sign-on via Microsoft Azure AD, Google Workspace or other OpenID Connect providers. No separate password needed.

IP whitelisting

Restrict access to actaSIGN to specific IP addresses or network ranges. Ideal for enterprise environments.

Role-based access control

Define roles and permissions: who can view, sign or manage documents. Granular control at the user level.

Trust service provider

actaSIGN works with Swisscom Trust Services — one of Europe's leading accredited trust service providers.

Accredited and recognised

Swisscom Trust Services is accredited as a trust service provider in Switzerland and recognised by the EU.

Adobe Approved Trust List

Swisscom is a member of the AATL. This means signatures are automatically displayed as trusted in Adobe Acrobat.

EU Trust List

Swisscom is listed on the EU Trust List — the official list of recognised trust service providers of the European Union.

Security as a foundation

All security measures apply automatically — no configuration effort required on your part.

No installation, no risk

actaSIGN runs in the browser. No local software, no plugins — and therefore no attack surface on your device.

Instantly compliant

ZertES, eIDAS, revDSG and GDPR are met from day one. You don't need to worry about regulatory details.

Tamper-proof archiving

Every signed document is automatically archived with an audit trail. Ideal for internal and external audits.

Internationally recognised

Signatures from actaSIGN are legally valid in Switzerland and the entire EU — thanks to Swisscom Trust Services.

See our security standards for yourself

Experience in a personal demo how actaSIGN combines the highest security standards with ease of use.

Request demo