01 / Identity
A verified signer, not an email address.
Signing opens on an identity confirmed through eKYC, so the signature is anchored to a real, checked person, not to whoever happened to hold a link.
who signed
Advanced Electronic Signatures
Kenal Sign turns a signature into evidence: a verified signer, a one-time code only they could use, and a cryptographic seal over the whole document that anyone can check, offline.
Built to the eIDAS Article 26 AES bar : jurisdiction-portable across Southeast Asia.
See it live: autentik.io is a complete consumer deployment of Kenal Sign, running this platform under one brand.
The difference
A tick and a typed name prove almost nothing when a document is challenged. Kenal Sign is built the other way around: the signature is the last step, and everything before it is evidence.
Ordinary e-signature
An IP address, a timestamp, a checkbox. Nothing ties the click to a real, verified person, and nothing stops the document from being altered afterward. When it matters, the burden of proof falls back on you.
A Kenal Sign signature
Who signed is a verified identity. That they signed is a one-time code only they could receive. What they signed is a cryptographic seal over the entire document. Any relying party can check all three, without calling us.
How it works
Every Kenal Sign signature is built from the three things the eIDAS Article 26 standard asks an advanced signature to demonstrate, and records the proof of each.
01 / Identity
Signing opens on an identity confirmed through eKYC, so the signature is anchored to a real, checked person, not to whoever happened to hold a link.
who signed
02 / Sole control
A single-use, time-limited code goes only to the channel bound to the verified identity, never one typed in at signing time. That linkage is what makes the signature genuinely theirs.
that they signed
03 / Seal
An Ed25519 signature covers the entire manifest : document, signer, intent, the sole-control proof, and a trusted RFC 3161 timestamp. Change any bound field and the seal breaks.
what they signed
Why it holds up
The strength of a signature should not depend on the vendor still being around. Kenal Sign is built so the proof travels with the document.
Offline verification
Anyone can validate a sealed document against published cryptographic material alone. No login, no API call, no network path back to us. A verifier works fully offline, so acceptance never depends on our uptime.
✓ verified against Ed25519 public keyZero-custody option
Attaching the document is the sender default. Choose zero custody on an envelope and Kenal Sign stores the document's SHA-256 and minimal metadata, never the file. Signers check that fingerprint against the copy you deliver yourself.
Tamper-evident trail
Every event in a signing ceremony commits to the one before it. Insert, delete, or reorder anything and the chain no longer verifies : detectable by any relying party.
Jurisdiction-portable
Signing profiles carry the rules of each market, Indonesia and Malaysia today, more on the same core, so the evidence package fits local law without a separate product.
For platforms and resellers
Kenal Sign is white label to the core. Partners run the whole signing experience under their own brand and domain, provision their own customers, and never put us in a customer's line of sight.
Autentik is a complete consumer deployment of Kenal Sign : everything on it is this platform wearing one brand. Jaya eSign and Meterai Digital are illustrative of what a partner deployment looks like, not live services.
The acceptance surface
Meeting the eIDAS Article 26 criteria also satisfies the UNCITRAL functional-equivalence model adopted across ASEAN and the Commonwealth, and the US ESIGN / UETA model. The same signature is accepted on the same evidence, market to market.
Request a briefing
Kenal Sign is onboarding partners and design customers across Southeast Asia. Tell us what your customers sign, and we will set you up.