VERIFICATION WORKSPACE

Check a file

Choose an original file and its detached CMS signature. The cryptographic check runs locally in your browser.

LOCAL VERIFICATION · PHASE 2

Verify a detached signature

Check a file against its CMS signature entirely in this browser.

On this device
MAX 32 MIB
Drop file here or browseThe exact file that was signed
MAX 1 MIB
Drop file here or browseCMS SignedData, DER encoded (.p7s)

Both files are processed locally. They are not uploaded to this website.

Current trust limitation

The verifier checks certificate paths to the configured self-managed Enkiel Root CA and checks revocation when a fresh, valid CRL is published. Until then, revocation is unknown. A valid Enkiel path does not mean a third party verified the signer's identity; confirm the Root CA fingerprint separately.