Skip to content
Signatures

Signed, and provably so

The signing page is where the money is earned or lost. The person arrives from your email, on an address that is not yours to them yet — so the page carries your brand, and everything that happens on it is written down.

  • An append-only chain: each entry carries the hash of the one before it
  • A protocol sheet travels with the document
  • The signing page shows the account's logo, not a platform shell
  • Opening, reading and signing are all recorded, with a shortened IP
The session

One link, one person, one document set

A signing session is created against a record and carries the documents that belong to it. The link is signed and bound to the account, so it cannot be guessed and cannot be reused for a different case.

  • Generated from your templates the document is filled from the record's fields
  • No account for the signer they came from an email; a login would end the session there
  • States that survive a reload opened, signed, declined, expired — each with its own page
  • Declining is a real option with a reason, recorded like everything else
The evidence

A chain, not a log file

Every step appends an entry that carries the hash of the entry before it. Changing anything in the middle breaks every hash after it, which is the whole point: the record is not “trust our database”, it is arithmetic.

  • Hash chain each entry sealed against the previous one
  • Protocol sheet attached to the finished document, readable without our software
  • Shortened IP in the document enough to place the signature, not enough to track a person
  • Time, user agent, document hash the four things a dispute actually asks about
The brand

It looks like it came from you

The signer has never heard of Leadflip. The page carries your logo, or your name when no logo is stored — the same rule the outgoing mail follows, so the two look like one sender rather than two.

  • Logo or name, never both the same rule as the mail layout, and the same sizing
  • A signed, account-bound image address not a public URL with your account id in it
  • The return and portal pages too anything the account is the sender of carries its brand
  • Sign-in stays ours a login page that borrows a brand is a phishing lesson

Questions people ask

If the answer you need is not here, the help center has the long version.

Is this a qualified electronic signature?
No. This is a simple electronic signature with an evidence chain: who signed, when, from where, and against which exact document. It is the right tool for a mandate or an agreement where a court would weigh evidence — it is not a replacement for a qualified signature where the law demands one.
Can the signer see what they are signing before they sign?
Yes, the full document, and the fact that they opened it is part of the record. A signature on a document nobody opened is worth very little.
What does the signer see if they open the link twice?
The state it is in — already signed, declined, or expired — on a page that carries the same brand as the first visit. The second opening is recorded too.

Bring the month you would rather not talk about

Set up your own entity, your own fields and one routing rule, and see what it does with a record you put through it.