Prove your software is genuine — before it runs on anyone’s machine

Every piece of software you ship carries your name. SSL's code signing certificates and cloud signing service let you cryptographically sign executables, drivers, scripts, and firmware — so users, platforms, and operating systems can verify that your software is authentic and hasn't been tampered with since you signed it.

Unsigned or improperly signed code is one of the leading software supply chain attack vectors

Software supply chain attacks — from SolarWinds to XZ Utils — show that the integrity of code between the developer and the end user is not guaranteed without cryptographic signing. Operating systems, platforms, and security tools increasingly require signed binaries. Regulators and compliance frameworks (SLSA, SSDF, SOC 2) are mandating software integrity controls.

SSL’s Software Integrity products address two distinct needs:

  • Code Signing Certificates — validated certificates that cryptographically bind your identity to the code you sign, at three validation levels (IV, OV, EV)
  • eSigner for Code — a cloud-based signing service that eliminates the hardware token requirement for EV code signing, enabling seamless CI/CD pipeline integration

Two ways to sign and protect your software

Code Signing Certificates

Sign your code with a validated identity. IV for individuals, OV for organizations, EV for maximum trust and instant SmartScreen.

eSigner for Code — Cloud Signing

Sign from the cloud. No hardware token required. Integrates with GitHub Actions, Jenkins, Azure DevOps, and more.

Which solution do you need?

Question 1
Do you need instant SmartScreen reputation or kernel-mode driver signing?
Question 2
Who will be on the code signing certificate?
Question 3
How do you want to store your private key and sign?
Your options
IV
IV Code Signing
Personal name verified, no business required. SmartScreen builds over time.
Individual validated
No business entity needed
Hardware token or eSigner
View IV →
EV SP
Sole Proprietor EV
Full EV trust as an individual — instant SmartScreen, driver signing.
Instant SmartScreen
Kernel-mode driver signing
No business entity needed
View EV SP →
OV
OV Code Signing
Organization name on every installer. Trusted on all Windows versions.
Organization validated
All Windows versions
Hardware token or eSigner
View OV →
EV
EV Code Signing
Instant SmartScreen. Required for kernel-mode drivers. Signatures survive expiry.
Instant SmartScreen
Kernel-mode driver signing
Windows Hardware Dev Center
View EV →
☁️ eSigner
eSigner for Code
Cloud HSM signing — works with any of the four certificates above. No hardware token required.
Sign from CI/CD or CLI
FIPS 140-2 L3 HSM managed by SSL.com
No token to buy or replace
View eSigner →

Compliance & Standards

Microsoft Authenticode

All Windows executable signing — OV and EV trusted

Windows Kernel Mode Drivers

Requires EV Code Signing certificate

Microsoft SmartScreen

EV delivers immediate reputation — no first-download warnings

Apple Gatekeeper / Notarization

macOS distribution requires Developer ID signing and notarization

CA/B Forum Code Signing BR

All SSL certificates comply with Code Signing Baseline Requirements

Why SSL

eSigner cloud signing

Cloud HSM-backed signing — purpose-built for CI/CD, no hardware token required.

WebTrust for Code Signing BR

Audited annually by BDO — CA/B Forum Code Signing BR compliance.

SWS API

Programmatic certificate management and signing integration.

In operation since 2002

Over two decades of PKI infrastructure experience.

Ready to sign and protect your software?

Sign and protect your code with validated certificates, cloud signing with no hardware token, or talk to an expert about your requirements.

We’d love your feedback

Take our survey and let us know your thoughts on your recent purchase.

Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognizing you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

For more information read our Cookie and privacy statement.

3rd Party Cookies

This website uses Google Analytics & Statcounter to collect anonymous information such as the number of visitors to the site, and the most popular pages.

Keeping these cookies enabled helps us to improve our website.

Show details