Pair your GeoTrust certificate with a DigiCert Code Signing Certificate to show customers, app stores and operating system providers that no third parties have tampered with your code.
Perfect for security-conscious organizations and software developers, your code signing options include cloud-based secure key private storage or the high-assurance Extended Validation (EV) that Microsoft Windows drivers require for signing.
Pair your GeoTrust certificate with a DigiCert Code Signing Certificate to show customers, app stores and operating system providers that no third parties have tampered with your code.
Perfect for security-conscious organizations and software developers, your code signing options include cloud-based secure key private storage or the high-assurance Extended Validation (EV) that Microsoft Windows drivers require for signing.
Read More >Two-Factor Authentication (2FA) signing with a USB token.
Verification to prove intellectual property, plus tamper protection and proof of authenticity.
Timestamped certificates ensure added security—any code with an expired signature must be re-signed.
Authorized-only HSM certificate keys for signing control.
By attaching a digital certificate to your code, code signing enables confirmation that digital binaries haven’t been altered. Using Public Key Infrastructure (PKI), a code signing certificate attests to the integrity of the code or software while attaching a cryptographically unique user and timestamp to show when and by whom the code was signed.
Firmware, applications, drivers, mobile apps, containers, source code artifacts, and all other all types and forms of digital binaries can all be signed with a code signing certificate.
As of June 1, 2023, code signing certificate key pairs must be issued and stored in a Hardware Security Module (HSM) that meets or exceeds FIPS 140-2 Level 2 or Common Criteria EAL 4+ standards to ensure the private key is protected and unexportable.
DigiCert uses secure tokens to set up private keys, in compliance with CA/B Forum regulations. You can use your own token (which you must set up to sign code) or get one from DigiCert. Read about the setup process here.
DigCert certificate subscriptions allow you the flexibility to easily replace or reconfigure certificates and other licensed products, simplify budgeting by annualizing the fees associated with your certificates, and automate license renewals for streamlined certificate lifecycle management.