dSign — Privacy Policy

Last updated: August 26, 2026

This policy covers the dSign browser extension, the dSign web portal, and dSign Xchange (document exchange with external signers). It describes what we collect, why, how long we keep it, and who it is shared with.

What we collect

What we do NOT collect

How we use it

Solely to provide the signing service: authenticate you, process the document you asked to be signed or exchange, produce a legally valid signature, deliver a shared document to its intended recipient, and maintain the audit trail required by eIDAS Regulation (EU) 910/2014.

Sharing

Data is shared only with: the certificate/signing provider you choose to use (e.g. your smart card's issuing CA, Halcom, or a Cloud Signature Consortium provider), your own organization's administrators (for account and billing management), and — for documents you send or receive via dSign Xchange — the specific external recipient or sending organization you chose to exchange that document with. We do not sell or share data for advertising.

Retention

Outside of dSign Xchange, we do not retain a browsable history of previously-signed documents. Once a signature is delivered to you, dSign keeps only the audit log entry (hash + metadata, described above) — not the document itself.

Your rights

Contact your organization's administrator to request access to, correction of, or deletion of your account data, subject to eIDAS audit trail retention requirements for already-completed signatures.

Contact

Support: sign@darhiv.ba