IV Code Signing

IV Code Signing

Put your verified personal name on every installer, executable, and script you distribute: no business registration required.

Key Benefits

Your name on every installer

Your verified personal name is displayed when users run your software: not “Unknown Publisher”.

Tamper-evident signing

Any modification after signing, even a single bit flipped, cryptographically invalidates the signature. Windows, macOS, and inspection tools detect the break immediately and alert users to tampering.

Cloud signing compatible

Works with SSL.com eSigner for Code to sign binaries directly from CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, Azure DevOps) without distributing hardware tokens to build machines.

Trusted on all Windows versions

IV certificates are trusted for Microsoft Authenticode executable signing across Windows 11, Windows 10, Windows Server 2025, Server 2022, Server 2019, and every earlier supported Windows release.

Who Is It For?

Independent developers

Independent developers shipping tools, utilities, command-line apps, and personal projects under a verified individual name: the IV tier gives solo developers access to Authenticode signing without a business entity.

Open source maintainers

Open source maintainers who want verifiable, signed release artifacts for their community. Downstream packagers and distributors verify each release against the maintainer’s published public key.

Freelance developers

Freelance developers distributing software to clients with a verified personal name on every installer: reinforces contractor identity and protects clients from tampered releases.

Students & hobbyists

Students, researchers, and hobbyists distributing publicly available software with professional-grade Authenticode signing. IV is the lowest-cost path to Windows-trusted signed binaries.

Purchase & Pricing

1. Select Certificate Duration

1 Year
$129.00/yr
2 Years
$116.10/yr
Save 10%
3 Years
$109.65/yr
Save 15%
4 Years
$103.20/yr
Save 20%
5 Years
$96.75/yr
Save 25%

2. Select Key Storage & Delivery (optional)

eSigner Cloud Signing

Sign anywhere using eSigner.com. No hardware required.
+ Subscription

YubiKey

Physical Token
+ $279.00
YubiKey Quantity $279 each

Standard

3–5 business days after validation (Continental US)

Express + $329.00

1 day after validation

Bring Your own Cloud HSM

Self-managed infrastructure
+ Starting at $500.00

SSL.com must attest your key to your chosen provider before issuing the certificate. This fee is a one-time charge per order.

AWS CloudHSM
Attestation Fee
$1,500
Google Cloud HSM
Attestation Fee
$1,500
Azure Dedicated HSM
Attestation Fee
$500.00

Looking for a simpler option? SSL.com eSigner for Code provides cloud-based signing with no HSM to provision, no attestation fee, and a lower total cost for most teams.

Bring your own on-premises HSM

SSL performs an attestation ceremony for your compliant on-premises HSM.
+ Custom Pricing

Please contact sales.


3. Validation Speed (optional)

Choose how quickly your organization or identity is validated before your certificate is issued.

Standard

3–5 day validation Ā· 2–3 day US shipping Validation completed after all agreements, entity info submitted, and a successful callback to a listed phone number. Included

Expedited

2 business day validation Ā· overnight US delivery 2 business days priority validation from first complete submission and callback. Token shipped overnight in continental US. +$599.00

How It Works

1: Purchase

Select IV duration and complete your order.

2: Identity validation

SSL.com validates your personal identity: government-issued ID required.

3: Certificate issued

Certificate delivered to your account. Install on a FIPS hardware token or enroll in eSigner for Code.

4: Sign your code

Sign executables, scripts, and installers. Users see your verified personal name on the installer screen.

5: Timestamp

Always timestamp at signing: extends signature validity beyond certificate expiry.

Compliance & Standards

CA/B Forum Code Signing BR

Issued under current CA/Browser Forum Code Signing Baseline Requirements with all ballot resolutions applied. Hardware-backed private keys per the June 2023 key storage mandate for code signing.

Microsoft Authenticode

IV certificates are trusted for Microsoft Authenticode executable signing across every supported Windows version. SmartScreen reputation builds over time as your signed binaries circulate.

WebTrust for Code Signing BR

SSL.com is audited annually by BDO under WebTrust for Code Signing Baseline Requirements: the continuous independent assurance Microsoft and browser vendors require of code signing CAs.

2048+ bit RSA & ECC

2048-bit, 3072-bit, and 4096-bit RSA plus ECDSA P-256 and P-384 supported: compatible with modern signing toolchains including signtool.exe, osslsigncode, jsign, and cross-platform build systems.

Frequently Asked Questions

Not necessarily. IV private keys can be stored in software (PKCS#12 file) or on a FIPS hardware token. To use eSigner for Code cloud signing, enrollment is required after issuance.

IV certificates cover Windows Authenticode signing. macOS app signing requires Apple Developer ID certificates issued through Apple’s own developer program.

IV certificates are typically issued within minutes of identity validation. SSL.com validates your personal identity using government-issued ID.

Yes: always timestamp at signing time. A valid timestamp means your signed code remains trusted indefinitely, even after the certificate itself expires.

Ready to get IV Code Signing?

Put your verified personal name on every installer: no business registration required, issued in minutes.

Related Products

OV Code Signing

Organization Validated code signing: your company’s verified legal name appears in every installer and binary. For registered businesses, ISVs, and software publishers with a corporate legal entity.

Sole Proprietor EV

EV-level trust accessible to individual developers without a registered business entity. Hardware-backed keys, immediate SmartScreen reputation benefits, and kernel-mode driver signing eligibility.

EV Code Signing

Extended Validation code signing for registered organizations: verified publisher identity, immediate SmartScreen reputation, and kernel-mode driver signing eligibility for Windows Hardware Dev Center.

We’d love your feedback

Take our survey and let us know your thoughts on your recent purchase.

Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognizing you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

For more information read ourĀ Cookie and privacy statement.

3rd Party Cookies

This website uses Google Analytics & Statcounter to collect anonymous information such as the number of visitors to the site, and the most popular pages.

Keeping these cookies enabled helps us to improve our website.

Show details