Skip to content
Signatif

A CalConnect standard

Evidence, not faith.

Signatif is an open framework for sealing, delegating, and verifying artifacts in regulated industries. It replaces binary trust with graduated, reproducible evidence — computed the same way by every conforming verifier.

Organization
CalConnect
Verification
Offline capable
Algorithms
Post-quantum agile
Attestation
Multi-dimensional
Measurement recordv1
registry
Nº 1042
chain
root (3-of-5) → nmi → lab → model → instrument
attests
measurement record
scope
metrology · class M
dimensions
authority · person · time
transparency
log #1041 · included
ClassificationCERTIFIED

Illustrative artifact — verifiable offline, years after issuance.

The name is the architecture

Signatif is a backronym: each letter names a property the standard makes normative.

All principles
S

Sealed

Co-signatures over a canonical payload, one per trust dimension.

I

Interoperable

One pipeline and report format; scheme rules enter through registries.

G

Graduated

Coverage report, classification label, acceptance decision.

N

Non-repudiable

Threshold quorum, ceremony records, transparency logs.

A

Anchored

Every path ends at a declared trust anchor — fully offline.

T

Trust

Establishment, assessment, and withdrawal of confidence.

I

Infrastructure

Shared anchors, logs, and registries beneath any application.

F

Framework

Requirements that conforming implementations and profiles share.

One pipeline, three decisions

The standard separates what is verified, how it is graded, and whether it is good enough — so schemes and verifiers can differ without forking the machinery.

  1. 1

    Seal and delegate

    Authorities sign artifacts; authorization scope narrows monotonically at every delegation link.

  2. 2

    Verify

    Hard checks short-circuit to rejected; soft checks accumulate into an objective coverage report.

  3. 3

    Classify

    The scheme’s published policy maps the report to a label — a pure, deterministic function.

  4. 4

    Accept

    The verifier’s own risk policy turns the label into a decision for its context.

Verification in detail

The verifier, live

Toggle the checks. The coverage report is objective, the label is the scheme’s policy, and the decision is the verifier’s.

Hard checks — failure rejects

Dimension co-signatures

Authority always attests via the chain; add dimensions as co-signatures on the same payload.

Soft checks — coverage accumulates

Time anchor
Independent roots

Verifier acceptance policy

Coverage report

signature_valid
✓true
scope_narrowing
✓monotonic
revocation_status
✓clear
dimensions
✓authority · person · time · location
dimension_count
✓4
transparency
✓included
time_anchor
✓fresh
independent_roots
✓2
multi_log_quorum
✓met
Classification certified

Full dimensional coverage, transparency and multi-root inclusion.

acceptance policy: standard

accept

Built for artifacts that must not lie

Where a certificate carries legal, economic, or safety consequences, "the key was valid" is not enough.

All domains

Legal metrology

Calibration and type-approval certificates, verifiable decades after issuance.

Pharmaceuticals

Batch release with manufacturer, operator, conditions, and time each attested.

Food safety

Inspection and provenance records across supply chains and jurisdictions.

Defense procurement

Component provenance with revocation that propagates when trust is withdrawn.

Why not the incumbents

PKI, blockchain, transparency logs, credentials — what each is built for, and what Signatif adds

Four regulated scenarios — batch release, offline inspection, cross-border acceptance, withdrawn authorization — and the design boundary each existing solution hits. The comparison is the standard’s own, and it cuts both ways.

Read the comparison

Build on it

A scheme of your own — registries, scope, dimensions, policies

The standard fixes the machinery; your scheme defines the domain. Six steps from hierarchy mapping to claimed conformance, with worked profiles for food traceability and electronic components — and how a Signatif scheme carries the EU Digital Product Passport. A reference implementation already claims the full conformance set.

EU DPP

The Digital Product Passport needs a verifiable substrate: QR delivery, decentralized registry, multi-operator transparency, decade-plus lifetimes. That substrate is specified, and it is testable.

DPP integration