Pair your Thawte certificate with a DigiCert Code Signing Certificate to show customers, app stores and operating system providers that no third parties have tampered with your code.
Perfect for security-conscious organizations and software developers, your code signing options include cloud-based secure key private storage or the high-assurance Extended Validation (EV) that Microsoft Windows drivers require for signing.
Read More >Pair your Thawte certificate with a DigiCert Code Signing Certificate to show customers, app stores and operating system providers that no third parties have tampered with your code.
Perfect for security-conscious organizations and software developers, your code signing options include cloud-based secure key private storage or the high-assurance Extended Validation (EV) that Microsoft Windows drivers require for signing.
Read More >In addition to protecting your organization, code signing certificates help you meet platform requirements, prevent security warnings, and ensure whatever you build is packaged in the highest level of digital trust.
Multi-factor authentication
Two-Factor Authentication (2FA) signing with a USB token.
Identity verification
Verification to prove intellectual property, plus tamper protection and proof of authenticity.
Timestamping
Timestamped certificates ensure added security, because any code with an expired signature must be re-signed.
Signing authorization
Authorized-only HSM certificate keys for signing control.
Easy integrations with universal platform compatibility, including Authenticode, Kernel Mode, and more.
Platforms
Client-Side Libraries
Marketplace Plug-in
Code signing enables confirmation that digital binaries haven’t been altered. Using Public Key Infrastructure (PKI), a code signing certificate attaches to your code, attesting to the integrity of the code or software while attaching a cryptographically unique user and timestamp to show when the code was signed and who signed it.
Applications, firmware, drivers, mobile apps, source code artifacts, containers, and all other types and forms of digital binaries can all be signed with a code signing certificate.
As of June 1, 2023, code signing certificate key pairs must be issued and stored in a Hardware Security Module (HSM) that meets or exceeds FIPS 140-2 Level 2 or Common Criteria EAL 4+ standards to ensure the private key is protected and unexportable.
DigiCert uses secure tokens to set up private keys, in compliance with CA/B Forum regulations. You can use your own token (which you must set up to sign code) or get one from DigiCert. Read about the setup process here.
DigCert certificate subscriptions give you the ability to easily replace or reconfigure certificates and other licensed products and automate license renewals. Subscriptions also simplify budgeting by annualizing the fees associated with your certificates, streamlining all parts of certificate lifecycle management.