Skip to main content

Verify DCC and PDF seals for free

Use Verify seals to examine DCC and PDF seals on your computer for free. You do not need a Memida account, a company certificate or an unlocked certificate store. Your files remain unchanged.

The app evaluates the signature, certificate trust and, optionally, current revocation status separately. A valid signature confirms that the signed data is unchanged, but on its own does not confirm a valid eAttestation.

Fig. 1: File selection for seal verification

Select files to verify​

  1. Open Verify seals.
  2. Optional: Enable Check current revocation status online (CRL) to retrieve current certificate revocation lists.
  3. Under Verify files, select your .xml or .pdf files.
  4. Open the individual Verification results for details.

The limits are 6 MiB per DCC and 34 MiB per PDF. The app checks the entire selection one file at a time, even when results span multiple pages.

Read the signature status​

The signature status describes the document that was checked:

DisplayMeaning
Signature cryptographically validSigned data is unchanged. Also consider certificate trust and revocation status.
Signature invalidVerification failed. Do not rely on this seal.
No seal foundThe app did not detect a signature.
Signature format not supportedComplete verification is not possible; validity remains uncertain.
File could not be verifiedProcessing failed; see the details for the reason.

Distinguish certificate trust from revocation status​

DAkkS identifier and trust chain confirmed offline means that the certificate matches the supported DAkkS profile and its certificate chain has been confirmed locally. The app separately identifies untrusted, expired and not-yet-valid certificates.

Fig. 2: Signature, certificate trust and revocation status in the verification result

In this example, the signed data is unchanged (1). However, the certificate is untrusted (2), and the current revocation status has not been checked (3).

The online option downloads public D-Trust revocation lists. Documents, certificates and passwords are not transferred. Certificate and issuer not revoked according to current CRLs applies at the displayed verification time.

For Revocation status cannot be determined reliably – check incomplete, possible revocation remains unresolved. Check the reason, internet connection and computer time. Certificate or issuer revoked – do not trust the seal reports revocation: do not trust the seal even if its cryptographic signature is valid.

Filter results and save a record​

Fig. 3: Filter verification results and save a record

Use Search file name for individual files or Filter results (1), for example by Clarification required.

Two formats are available under Save record (2):

  • Save readable record (HTML): open in a browser, print or save as PDF.
  • Save verification data (JSON): save results in a machine-readable format.

The export contains all results, including filtered-out files, file checksums, verification time and verification limitations. The seal verification record is not a technical inspection report.

Understand verification limitations​

Seal verification does not confirm the technical accuracy of calibration results, DCC schema compliance or coverage by the scope of accreditation. It does not confirm trusted timestamps, validity at a past point in time or Memida permissions. Without the online option, the current revocation status remains unchecked.

Documents with multiple signatures

If a document has multiple signatures, the certificate information applies to the last signature that covers the entire document. Certificate trust for earlier signatures is not confirmed.