Setup

Create a signing ceremony

Pick the document, choose how you sign, then invite your COSignees.

Document
No document handy? Try a sample document
Participants (COSignees)
Invited COSignee
Or invite by email
How COSigna's server stays blind → COSigna emails this address a heads-up that a ceremony is waiting. It is not a signing link — you send the secure link yourself after launch.
Who can see this ceremony?
While in progress, link-holders see only a count ("2 of 4 signed"). The full record becomes visible once the ring closes.
This choice is permanent once the ceremony launches.
Ceremony time limit

Require the ring to close within a set time after it opens.

The clock starts when you open the ring. Once it elapses, no one can sign or close — the ceremony expires. The clock starts when you open the ring. A removed COSignee is recorded in your own ceremony history, not in the cryptographic proof; the ring closes only if at least one COSignee has signed.
Ask for location + adds a step for each signer

Request each signer's location, written into the block they sign.

Only a coarse location (≈ city level) is recorded for the certificate; precise coordinates never leave the signer's device — only a hash is committed. Self-declared.
Security

Choose how COSignees unlock the ceremony.

Start signing ceremony Add your document, your name, and one COSignee to start.
Open the ring — your consent photograph

As the initiator, you sign first. This is your link — link 1 of the chain. No predecessor to validate; the document hash QR will appear in your photograph.

QR
Starting camera…

Head won't stay centered? Turn off Center Stage in Control Center → Video Effects (macOS/iPad auto-framing).

Signer Links
Signers
Audit log
Show audit log
Close the ring

The ring closes when the organizer confirms it. Nothing closes on its own.

Last signer
—
Last participant in the ring

Checking this box commits the complete chain — this action is permanent.

One last photograph — closing the ring

This photograph shows that the same person who opened this ring is the one closing it — after watching every other COSignee sign. Unlike your earlier photographs in this ceremony, no one signs after you: this one is sealed into the record for whoever verifies the proof later.

Starting camera…

Head won't stay centered? Turn off Center Stage in Control Center → Video Effects (macOS/iPad auto-framing).

This step is optional — declining does not stop the ring from closing. Your photograph is always encrypted on this device before it's sent; COSigna cannot read it. Like every photograph in this ceremony, it declares who you are — it does not verify it.

Ring closed!

The ceremony is complete. Bitcoin anchor pending — confirmation expected within hours. Until then the timestamp is COSigna's own.

Your proof Capsule

Keep these together, in the same folder — that folder is your Capsule: ① your original document ② the Ceremony Certificate, saved right next to it. The certificate carries everything: the proof as a PDF attachment, and clickable doors to re-verification, the shareable « Signed with COSigna » page, and the Bitcoin timestamp. Your Capsule verifies forever — with or without us.

Generate the photo certificate NOW — the decryption key lives in this session's link, and links get lost over the years. Freeze the human evidence into your folder today.

Ceremony Progress
Setup your ring
Signed
Pending
Tap a name to see their status Click a face to view who signed
Ceremony:
Consent photograph chain

Each photograph is a link — not a group photo.

No photos yet
COSigna — patent EP3665600B1 · US11531746B2 · FR3070079B1
Report bug COSigna — a Cryptographic Ring of Mutual Consent · The ring is strong because the loop is closed. The ring is strong because the loop is closed. COSigna