Document distribution and interaction with delegation of signature authority
US-9626653-B2 · Apr 18, 2017 · US
US9935777B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9935777-B2 |
| Application number | US-201514840380-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 31, 2015 |
| Priority date | Aug 31, 2015 |
| Publication date | Apr 3, 2018 |
| Grant date | Apr 3, 2018 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Improved document processing workflows provide a secure electronic signature framework by reducing attack vectors that could be used to gain unauthorized access to digital assets. In one embodiment an electronically signed document is removed from an electronic signature server after signed copies of the document are distributed to all signatories. The electronic signature server optionally retains an encrypted copy of the signed document, but does not retain the decryption password. This limits the amount of data retained by the electronic signature server, making it a less attractive target for hackers. However, the electronic signature server still maintains audit data that can be used to identify a signed document and validate an electronic signature. For example, a hash of the document (or other document metadata) can be used to validate the authenticity of an electronically signed document based on a logical association between an electronic signature and the signed document.
Opening claim text (preview).
What is claimed is: 1. A computer-implemented electronic signature acquisition method comprising: providing a short-term storage resource that is administered by an electronic signature server, and that is configured to store digital assets managed by the electronic signature server; providing a long-term storage resource that is administered by the electronic signature server; receiving, from a document originator, a document that is to be distributed to a document recipient as part of an electronic signature workflow that is managed by the electronic signature server, wherein the document includes one or more document terms; receiving, from the document originator, one or more parameters that define a data retention policy; receiving, from the document recipient, an indication of assent to the one or more document terms included in the document; storing an electronically signed version of the document in the short-term storage resource; generating document audit data characterizing the signed version, wherein the document audit data includes at least one of a document identifier, a signatory identifier, a digital signature and a signature timestamp; saving the document audit data in the long-term storage; sending a notification to the document originator and the document recipient indicating that the signed version of the document will be removed from the short-term storage resource at a specified time; and removing the signed version of the document from the short-term storage resource at the specified time, and in accordance with the data retention policy, wherein after said removing the electronic signature server does not retain a copy of the document. 2. The method of claim 1 , further comprising: generating (a) an encrypted copy of the signed version of the document and (b) a password necessary to decrypt the encrypted copy; storing the encrypted copy in the long-term storage resource; sending the password to at least one of the document originator and the document recipient; and removing the password from the electronic signature server. 3. The method of claim 1 , wherein the one or more parameters includes a document retention control toggle that indicates that the signed version of the document should be removed from the short-term storage resource after the indication of assent is received. 4. The method of claim 1 , wherein the one or more parameters includes a short-term storage duration parameter that defines the specified time in terms of a time period that begins at a point that is selected from a group consisting of (a) when the indication of assent is received, and (b) when the document is distributed to the document recipient. 5. The method of claim 1 : wherein the notification includes a copy of the electronically signed version of the document; wherein the notification is sent to at least one of the document originator and the document recipient via electronic mail; and further comprising saving a transmission record of the notification that includes a notification timestamp and a notification recipient identifier. 6. The method of claim 1 , further comprising: generating a hash of the signed version of the document before removing the signed version from the short-term storage resource; and saving the hash in the long-term storage resource. 7. The method of claim 1 , further comprising displaying a user interface that allows the document originator to define the one or more parameters that define the data retention policy.
involving digital signatures · CPC title
using cryptographic hash functions · CPC title
using a predetermined code, e.g. password, passphrase or PIN (network architectures or network communication protocols for supporting authentication of entities using passwords in a packet data network H04L63/083) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.