A contract signed by someone in Singapore, countersigned in Berlin, governed by the law of a third country, and stored in the cloud is unremarkable in 2026. What still catches people out is assuming that because electronic signatures are "legal", every electronic signature is equally strong.
They are not. The gap between a typed name in an email and a certificate-backed signature with verified identity is enormous — not in legal theory, but in what happens when someone denies they signed. This guide is about closing that gap.
Start with the question that actually matters
"Is an electronic signature valid?" is the wrong question, because the answer is almost always yes and it tells you nothing useful. The better question is: if this signer later denies signing, what do I have?
Disputes about signatures are rarely about whether electronic signing is permitted. They are about attribution — proving that this specific person, and not someone with access to their inbox, agreed to this specific document. Everything below follows from that.
The three tiers, in plain terms
Most legal frameworks recognise a spectrum of signature strength. The terminology differs by jurisdiction, but the structure is broadly consistent.
Simple electronic signature. An electronic indication of intent with limited verification — a typed name, a drawn squiggle, a click-to-accept. Legally capable of forming a contract in most places. Evidentially weak, because nothing ties the mark to a verified person and nothing prevents later alteration of the document. Appropriate for low-risk, low-value documents where the relationship itself provides context.
Advanced electronic signature. Adds two things that matter: the signature is uniquely linked to a verified signer, and the document is protected such that any change after signing is detectable. This is the level most commercial contracts should use. It is where identity verification, cryptographic sealing, and a retained audit trail come in.
Qualified electronic signature. An advanced signature certified by a regulated trust service provider under a specific national or regional framework. In the jurisdictions that define this tier, it typically carries the strongest legal presumption — sometimes explicit equivalence to a handwritten signature. It is also the most demanding to obtain, and often unnecessary.
National schemes map onto this differently. India's Aadhaar eSign, for instance, uses OTP authentication against a national identity database through an authorised service provider, producing a certificate-backed digital signature; our guide on how Aadhaar eSign works explains the mechanics. Other countries have their own certificate-based national schemes. The practical lesson is that "we use e-signatures" is not a compliance statement — the method matters.
Identity verification is the load-bearing part
Signature technology gets the attention; identity verification does the work. A cryptographically perfect signature applied by whoever happened to open the email proves very little.
Verification methods, roughly in ascending order of strength:
- Email access — proves control of an inbox. Weak on its own.
- SMS or OTP to a registered number — adds a second channel. Meaningfully better.
- Identity document upload — a government-issued document captured and retained against the signing record.
- Live selfie or liveness capture — a real-time image of the signer, which defeats the reuse of an existing photograph.
- Authentication against an authoritative register — such as a national identity database, where available.
Combining methods is what produces a strong record. On WeSignDeal, each party receives their own secure verification link and completes a live selfie plus identity document upload before signing, and then signs using Aadhaar eSign. That combination means the executed document is backed by a real-time image of the person, their identity document, and OTP authentication against a national register — three independent strands rather than one.
An important practical consequence: because verification is per-party rather than per-document, parties never need to be in the same place, or online at the same time. Each completes their own link when convenient.
The audit trail is your evidence
If a signature is challenged, the signature image is not what persuades anyone. The record around it is. A defensible audit trail captures:
- Who — the verified identity, with the verification artefacts retained.
- What — a hash of the exact document version presented, so the version signed is provable.
- When — a reliable timestamp for each event, not just the final one.
- Where and how — IP address, device, and channel for each step.
- Sequence — the full chain: document sent, opened, viewed, verified, signed.
- Integrity — cryptographic evidence that the document has not been altered since signing.
Two failure modes are worth calling out. First, version drift: if the document changes between being sent and being signed, the audit trail must show which version each signer actually saw. This is why WeSignDeal locks document fields once verification links are issued and payment is completed — every signer receives the identical final version, and a late change means starting a fresh document rather than quietly amending one in flight. Second, retention: an audit trail you cannot produce in three years is not evidence. Confirm how long records are kept and how they are exported.
Where digital execution still hits a wall
Being honest about limits is more useful than blanket claims. Categories that commonly resist electronic execution:
- Wills and testamentary documents — most jurisdictions retain strict formality requirements.
- Certain powers of attorney and some trust instruments.
- Negotiable instruments — cheques, bills of exchange, promissory notes in many systems.
- Property transfers requiring registration — the deed may be signable electronically while registration remains a physical process.
- Documents requiring notarisation or an oath — an affidavit can be drafted, stamped, and eSigned digitally, but the receiving authority may still require attestation before a notary. Our affidavit guide sets out that distinction.
- Documents needing apostille or consular legalisation for foreign use, which typically involves physical processing.
Separately, remember that signature validity and stamp duty compliance are different requirements. A perfectly signed agreement that should have been stamped and was not has a problem, and it is not a signature problem. Our eStamp and stamp duty primer explains what under-stamping actually risks.
Running a cross-border signing properly
Seven steps that avoid most of the trouble:
- Name the governing law and jurisdiction in the agreement. Without it, a cross-border dispute begins with an argument about which law applies before anyone reaches the merits.
- Check the document type is capable of electronic execution under the law that would govern enforcement — not merely where the signer happens to be sitting.
- Confirm each signer's authority. For corporate parties, the individual must be authorised to bind the entity. This is the most common defect in company-to-company signing, and it has nothing to do with technology.
- Choose a signing method appropriate to the value at risk, and check that every signer can actually use it. Where a national scheme is required, a signer outside it will need an alternative.
- Finalise the document before issuing signing links. Everyone signs the identical version; late edits mean a new document.
- Verify identity for every signer, not just the ones you do not know.
- Store the executed document with its audit trail, and know how to export both.
A word on counterparts. Traditional practice signed multiple physical copies and combined signature pages. Electronic signing removes the need: a single document accumulates all signatures with each event timestamped. If you nonetheless include a counterparts clause, make sure it does not accidentally impose formalities the electronic process does not follow.
Matching assurance to risk
Higher-tier signing adds cost and friction. Spending it uniformly is wasteful; spending it nowhere is negligent. A sensible rule of thumb:
- Low value, existing relationship, short duration — a simple signature with email verification is usually proportionate.
- Meaningful value, new counterparty, or multi-year commitment — use verified identity, tamper evidence, and a retained audit trail.
- High value, regulated context, or documents likely to be scrutinised — use the highest tier available in the relevant jurisdiction, and take local advice.
The asymmetry is worth remembering: the incremental cost of stronger signing is small and known, while the cost of an unenforceable agreement is large and unknown.
How WeSignDeal handles it
The workflow is deliberately the same across every document type — rent agreements, NDAs, service agreements, vendor agreements, job offer letters, affidavits, and the rest:
- Create the document and enter party details.
- Upload supporting documents.
- Each party receives a secure verification link and completes a live selfie and identity document upload — remotely, independently, on any device.
- Stamp duty is handled where the document type and jurisdiction require it: Government eStamp, or self-upload where that option is enabled for your case.
- Fields lock, and every signer completes Aadhaar eSign.
- The executed PDF is available for download, with the stamp certificate where applicable and the audit trail retained.
See How it works for the full sequence, Pricing for per-signer costs, and the FAQ Centre for the specific questions on verification, stamping, and who can sign.
Related reading
- How Aadhaar eSign works
- eStamp and stamp duty primer
- MSA and statement of work guide
- Freelance contract guide
Start an agreement online or create an account.
General information only, not legal advice. WeSignDeal is a technology and document facilitation platform, not a law firm. Electronic signature law, excluded document categories, and stamp duty requirements vary by jurisdiction and change over time — take professional advice for cross-border or high-value execution.