Trust

Data Compliance

Our commitment to data protection and regulatory compliance.

Last updated: April 2026

Compliance Framework

One Sign Pte. Ltd. is committed to maintaining the highest standards of data protection and compliance with applicable regulations in Singapore and internationally.

PDPA · Singapore

Compliant with the Personal Data Protection Act 2012, governing the collection, use, and disclosure of personal data.

GDPR · EU

Our practices align with GDPR principles for customers in the European Economic Area, including data minimization and right to erasure.

eIDAS · AdES

OneSigner produces PAdES advanced electronic signatures (AdES). The level a signature reaches โ€” advanced or qualified โ€” follows the certificate and the device it was signed on, not our software: a qualified certificate on a QSCD keeps that status through OneSigner. We are not ourselves a trust service provider.

ISO 27001

Our security practices follow ISO 27001 information security management principles.

Data Processing Principles

Cryptographic Standards

Physical Security (Optional Cloud Service)

For customers using our optional cloud signing service (available on request):

Data Transfer

For international data transfers, we ensure appropriate safeguards are in place, including:

Incident Response

In the event of a data breach, we will:

Data Protection Officer

For compliance inquiries, data access requests, or to report a concern:

Email: dpo@onesign.sg
Address: One Sign Pte. Ltd., 10 Anson Road #22-02, International Plaza, Singapore 079903