Verify a signed document

This page checks a kysigned evidence bundle: the PDF every party receives when an envelope is complete. The check runs entirely on your own machine, in your browser. The file is never uploaded, and kysigned is not part of what you are trusting.

How it works: the bundle carries each signer's email, signed by their email provider with DKIM, plus timestamps. The verifier checks each signature against the provider's public key, confirms each signer signed exactly this document, checks the timestamps, and reports an assurance tier for every signer.

Verify without a browser

Run the same verifier from a terminal: npx kysigned verify <bundle.pdf> (add --json for a machine-readable verdict). From an MCP client, use the verify_bundle tool of the local server (npx -y kysigned-mcp). Both run on your machine.

An AI assistant that cannot run programs cannot verify a bundle itself: it should say so and point you to this page, or suggest a coding agent that can run the command above.

This page runs the check with JavaScript in your browser.