Skip to content
QUALIFIED TRUST SERVICES

Legally compliant digital signatures (eIDAS) to drive forward the digitalization of your business processes.

CORPORATE TRUST SERVICES

Cryptography-based trust services
to protect your digital identities,
data and business secrets.

Qualified electronic signature products based on eIDAS - legally binding and secure.

API GUIDE

Upgrade your application with electronic signatures by primesign.





DOCUMENT SIGNING API

Signing of PDF documents. primesign handles document processing and adds a visual signature stamp.

HASH SIGNING API

Signing of hash values. Your application handles document processing and provides the document viewer.

CASH BOX API

RKSV-compliant JWS- or raw signatures for cash box receipts.





primesign TRUST CENTER

All documents for our qualified trust services, certificate revocation list, root-/CA- certificates, etc.

RESOURCES

Fact sheets, product documentation and more.



BLOG

Insights on digital signatures, eIDAS and trust services.

BG_ICON_ARROW_3-1
Back to all questions

Can I sign at qualified level with the EUDI Wallet?

Yes. The eIDAS 2.0 Regulation provides that natural persons can create qualified electronic signatures directly from the EU Digital Identity Wallet, free of charge for private use.

Technically, the wallet supplies the verified identity and the authorisation, while a qualified trust service provider supplies the qualified certificate and the signature creation device. The legal effect is identical to any other QES: equivalence with a handwritten signature under Article 25(2) eIDAS.

Here's how signing from the wallet works:

  • Identity from the wallet: The wallet proves the state-verified identity of the signing person at a high level of assurance.
  • Authorisation by the holder: The specific signing request is displayed in the wallet and approved via biometrics or a PIN.
  • Certificate from the trust service: A qualified trust service provider supplies the qualified certificate, where appropriate as a one-time certificate for that transaction.
  • Signature creation in the QSCD: The signature is generated inside a certified signature creation device, not on the end user's phone.
  • Legal effect: The result is a full QES with a reversed burden of proof and automatic EU-wide recognition.
  • Long-term validation: Timestamp and validation data are embedded so the document stays verifiable across the retention period.

What businesses need to provide:

  • QES-capable signing journeys: Processes must be able to handle and validate qualified signatures, not just simple click confirmations.
  • Wallet as an identity source: The application must accept an external, state-verified identity rather than only proprietary user accounts.
  • PAdES with LTV: Signatures should be produced with long-term validation so they remain robust independently of wallet and provider.

primesign already supports instant signing with existing eIDs and is prepared for future eIDAS 2.0 wallets. Adopting that architecture now avoids a re-integration at wallet rollout — the wallet slots into the same signing journey as one more identity source.

Benefits

  • Qualified signing with no lead time and no certificate order
  • Free for private individuals and therefore broadly available
  • EU-wide recognition without additional verification
  • Substantially less friction in customer journeys
  • One signing architecture covering both eIDs and wallets

Still have questions?

Talk to a primesign expert about wallet-ready signing processes.

Talk to an expert