Paperless · E-Signature & Approvals

A signature is
evidence, not an image.

Pasting a picture of a signature into a document proves nothing. Valid electronic signing records who signed, when, that they intended to, and that nothing has changed since.

signature · doc_8812 · verified
✓SignerDr. Haris Mehmood
✓Identityverified · OTP +92-xxx-4471
✓Timestamp2026-08-04 14:22:07 PKT
✓Intent"I agree to the terms" · checkbox recorded
✓IntegritySHA-256 · unchanged since signing
✓ Evidence complete · ETO 2002
The image is decorative. The record is the signature.

Quick answer

Are electronic signatures legally valid?

Electronic signatures are legally recognised in most jurisdictions, including Pakistan under the Electronic Transactions Ordinance 2002, the European Union under eIDAS, and the United States under the ESIGN Act. Recognition is conditional rather than automatic: the signature must be attributable to the signer, the signer's intent to be bound must be captured, and the document must be protected so that any subsequent alteration is detectable. An image of a signature pasted into a document satisfies none of these. What satisfies them is an evidence record — verified signer identity, a trusted timestamp, an explicit recorded act of agreement, and a cryptographic hash demonstrating the document is unchanged since signing. For high-value contracts, specific arrangements should be reviewed by legal counsel.

RegimesETO 2002 (PK) · eIDAS (EU) · ESIGN (US)
Relatedworkflow digitisation
The problem

A picture of a signature
proves nothing at all.

Most disputed signatures fail on the same missing element: nobody recorded intent.

Failure 01

The pasted image

A picture of a signature is added to a PDF. It proves nothing about who applied it, when, or whether the document changed afterwards.

Failure 02

The approval in an inbox

A document was sent for sign-off and vanished. Nobody knows whose desk it sits on, so someone spends an afternoon asking.

Failure 03

Intent never captured

The signature exists but nothing records that the signer understood what they were agreeing to. Under challenge, that omission is the weak point.

What's included

Four deliverables, not a feature list.

Not every document needs the same level of evidence. What each class requires is decided up front.

01

Signature evidence design

What identity verification, intent capture and integrity protection your documents require in the jurisdictions you operate in.

02

Signing flow

Identity verification, an explicit act of agreement, a trusted timestamp and a cryptographic hash, recorded as one evidence bundle.

03

Approval routing

Multi-step sign-off with sequence, delegation and reminders, and status visible to everyone rather than to whoever sent it.

04

Retention and retrieval

Signed documents and their evidence records kept per your retention schedule, retrievable by content and metadata.

The engagement

Five steps, in this
order, every time.

Evidence is verified against what a completed signature must contain, not assumed from a picture on the page.

  1. 1

    Assess

    Which documents need signing, in which jurisdictions, and what evidence each context requires.

  2. 2

    Design

    The identity, intent and integrity controls for each document class. Not everything needs the same level.

  3. 3

    Build

    Signing flow and approval routing, with visible status and automatic reminders.

  4. 4

    Verify

    Confirm the evidence record contains identity, timestamp, intent and integrity for a completed signature.

  5. 5

    Retain

    Store documents and evidence under a defined retention schedule, retrievable by content.

9

Paperless rules in the Standard, each with a verification method.

4

Elements a valid signature record must contain: identity, timestamp, intent, integrity.

3

Signature regimes we build to: ETO 2002, eIDAS, ESIGN.

Why intent must be recorded separately from the signature.

The most frequently missing element in electronic signing is not identity or timestamp but intent — evidence that the signer knowingly agreed to be bound by this specific document. A signature applied without a recorded act of agreement is the weakest point under challenge, because it establishes that something was signed without establishing that the signer understood what. Rule PPR-04 requires intent, attribution and tamper evidence together. In practice this means an explicit affirmative action — a checkbox or typed confirmation — captured alongside the document hash, rather than inferred from the presence of a signature image.

Source: The Qawex Standard v1.0, rule PPR-04 · /standard/paperless/
Questions

Answers, not brochures.

Are e-signatures valid in Pakistan?

Yes. The Electronic Transactions Ordinance 2002 gives electronic signatures and records legal recognition, provided the signature is attributable to the signer, intent is captured, and the document is protected against undetected alteration. We build to those requirements rather than assuming a checkbox suffices. We are not lawyers, and for high-value contracts we recommend your counsel reviews the specific arrangement.

What about signing with international counterparties?

We build to eIDAS for European counterparties and ESIGN for United States ones, as the counterparty requires. The underlying evidence elements are largely consistent across regimes, identity, timestamp, intent and integrity, so the difference is usually in the level of identity assurance rather than in the structure of the record.

Do we need a third-party signing platform?

Sometimes, and where a counterparty requires a specific provider we integrate with it rather than argue. Where you control the process, building the signing flow into your own system removes a per-signature cost and keeps the evidence record inside your own retention schedule rather than someone else's.

What if a signature is challenged?

The evidence record is what answers the challenge: verified signer identity, trusted timestamp, the recorded act of agreement, and a hash demonstrating the document is unchanged since signing. This is precisely why the record matters more than the visual signature, and why intent capture is treated as non-optional.

Can approvals have multiple steps?

Yes, sequential, parallel, conditional, with delegation for absence and automatic reminders. Status is visible to everyone involved rather than only to the sender, which removes the most common failure in approval workflows: nobody knowing where a document currently sits.

qawex · next step

Make the evidence match the requirement.

The assessment reports what signature evidence your documents need in the jurisdictions you operate in, before anything is built.

Scroll to Top