Start free
A hand holding a phone showing a document and a signature, beside a mountain lake with a dock, small boats and a person walking to the water with a backpack.

E-signature, built the other way round

E-signatures for waivers and agreements, with the evidence behind them.

Anyone can collect a signature. What makes one hold up is the record around it — and most products treat that as a log. We built the record first and the signature is a row in it.

Sign. Verify. Seal.

Three things, in that order, and each one leaves a record the next one is built on.

Sign

A link by text or email, a tablet handed across the counter, or a call from your booking system. The signer reads the whole text, agrees to sign electronically as its own step, then signs.

Verify

Every completed agreement gets a certificate with a code. Anybody holding the document can check it at signsealer.com/verify — no account, no call to us. It is re-derived from the record when checked, so a change shows.

Seal

The text's fingerprint is written into every event, the trail is hash-chained and append-only, and the sealed PDF carries the certificate. Nothing here can be edited afterwards, by you or by us.

Four ways to sign. One record.

However the document reaches the person, the same engine records the same evidence, and the business sees one list.

Inside your own system

Your booking system, point of sale or CRM starts the document with one API call and hears back on a webhook. The signer never sees a second product. Four calls, in the quickstart.

By email

A link, personal to the signer, with a reminder after the days you set and the signed copy with its certificate when everyone has signed.

By text

The same link by SMS, sent only with a consent the record keeps, from a number that answers STOP. Most waivers are signed on the phone in the car park.

On a tablet at the counter

The SignSealer tablet app for iOS and Android runs one form in kiosk mode behind a staff PIN, resets between guests, and keeps signing when the connection drops. Counters and kiosks.

Built to the standard a court applies

Under ESIGN and UETA an electronic signature is enforceable when you can show five things. Signatures have been thrown out for missing the fourth — Ruiz v. Moss Bros. Auto Group, where the employer could not attribute the signature to the employee because the system kept no evidence of who was at the keyboard. SignSealer records evidence for all five, then seals it: every event carries the hash of the exact text, the trail cannot be edited afterwards, the finished PDF is sealed so that a changed byte shows, and an independent timestamp authority fixes the time of sealing.

1

Intent

They meant this act to be their signature.

2

Consent

They agreed to do business electronically — before signing.

3

Association

The signature is attached to this record and no other.

4

Attribution

It can be shown to be them.

5

Retention

The record can be accurately reproduced later.

What that means in the product

Four decisions you can check rather than take on trust.

Consent is its own event, before the signature

Not a checkbox beside the signature box. ESIGN requires consent to precede the transaction, and a system that records both in the same instant cannot show that it did.

The text is hashed into every event

A document edited after signing no longer matches, and we say so. The check recomputes the hash from the text rather than trusting a stored one — otherwise the one thing it exists to detect is the one thing it cannot see.

A published template cannot be edited

Revising makes a new version. Editing one in place changes what people signed last week, retroactively and invisibly, which is the single worst thing a signing system can do.

The trail is append-only

Hash-chained per customer, so removing or altering a row breaks every row after it. A record that can be edited is a record of what somebody was willing to leave behind.

What the business sees

The morning list. Every document with who has signed and who it is still waiting on, so the queue at eight is a list on a phone, not a clipboard. This is the real screen, on an example account.

The portal's Documents page for Example Outfitters: a table of kayak rental waivers, each marked completed or sent, with who has signed and who it is still waiting on.
Documents, for a business named Example Outfitters. The names are examples; the screen is not.

What the signer sees

One page, no app to install, no account to make. It loads no script and nothing from anybody else, which you can check in its headers.

  1. The whole document, first

    Shown in full and scrolled before anything else is asked. What will be recorded is one tap away, in plain words, with the text's fingerprint beside it.

  2. Consent, as its own step

    "I agree — continue" is a separate press with its own time, so the record can show consent came before the signature rather than assert it.

  3. Then the signature

    Typed, and the name is checked against who the link was sent to. A copy goes to their email, with the certificate once everyone has signed.

Built for the businesses that sign the most

Not another generic envelope. Two shapes, built once, because a waiver operation and a vacation rental are the same problem described with different nouns.

Vacation rentals and property managers

The guest list, the rental agreement, the house rules and the hot-tub waiver — for four people, two of them children — behind one link, with one state your lock or your PMS can wait on.

How it works →

Waivers at a counter

A tablet you hand across, a link on your site, or a call from your booking system. Works when the network does not, and the evidence says so rather than pretending otherwise.

How it works →

From the blog

What the law asks of an electronic signature, and how to run waivers and agreements so the record survives the day somebody disputes one.

Every article →

What customers say

Nothing yet, and nothing invented. SignSealer is new; when customers have used it long enough to have an opinion worth reading, theirs will be here — the critical ones included, with our reply beside them. How reviews work here →

An API you would choose on purpose

Idempotency with Stripe's semantics, signed webhooks with a real retry ladder, and a reference generated from the router so it cannot drift from what the code actually validates.

Idempotent writes

Same key and body replays. A different body is refused rather than absorbed — because absorbing it means you believe your second request happened, and it did not.

Webhooks that give up loudly

Six attempts on a widening ladder, then the delivery is dead and stays readable. You can see what was missed instead of guessing.

Scoped keys

No "full access". A booking integration gets signing:subjects, which is "decide who my guests are", not "act on my behalf".

Read the docs

A hand holding a phone showing a document and a signature, outside a timber lakeside cabin, with two guests walking to the door with luggage.

Ready when the next guest is.

Free for the first 25 agreements a month. No card to start.