With Certum Code Signing in the Cloud, your private key is kept in Certum's hardware security module (HSM). You sign with the SimplySign app, with no USB token and no shipping to wait for.
Prices are per year and come from our product data. See the product page for term options and details.
Cloud OV
Cloud OV
Cloud EVAll three products use the same cloud infrastructure; they differ in who the certificate is issued to and how far validation goes.
Open source developers
For individual developers who publish open source projects.
Companies and software developers
The standard choice for publishers of commercial software.
Driver developers and enterprises
For those who want the most extensive organization validation.
SimplySign, Certum's cloud signing service, has two parts: the mobile app on your phone and SimplySign Desktop on your computer.
You choose the product and complete the order; Certum validates your identity or your organization.
You install the SimplySign app on your phone and link it to your account with the activation details from Certum. The app generates one-time codes.
The application you install on your Windows or macOS computer presents your certificate to the system as a virtual smart card.
After logging in with a one-time code, you sign with tools such as signtool and jarsigner, just as if a USB token were plugged in.
| Cloud signing (SimplySign) | USB token | |
|---|---|---|
| Where the private key is | In Certum's HSM | On the token sent to you |
| Delivery | Electronic; no shipping | The token arrives by courier |
| Where you can sign | Computers with the application installed | The computer the token is plugged into |
| Authentication | One-time code from the mobile app | Token PIN |
| Risk of loss or failure | No physical device | The token can be lost or damaged |
| Internet connection | Needed while signing | Needed only for timestamping |
.exe .dll .msi .cab .cat .ocx
.ps1 .psm1 scripts and modules
.jar archives (jarsigner)
Word, Excel and PowerPoint macro projects
It is a code signing certificate whose private key is kept in the certificate authority's hardware security module (HSM) instead of on a USB token sent to you. You sign through an application installed on your computer; the signature is as valid, and looks the same, as one made with a USB token.
At DATASSL, Certum cloud code signing certificates start at $100.00 per year (excl. VAT). Current prices are shown on the product cards on this page.
No. The key is stored in Certum's HSM; no physical token, smart card or card reader is needed. What you need is the SimplySign app on your phone and SimplySign Desktop on your computer.
SimplySign Desktop is available for Windows and macOS. The mobile app runs on iOS and Android phones.
No. Open Source Code Signing is for individual open source developers and is used only to sign open source software. Companies should choose the Standard or EV product.
No. Since 2024 Microsoft no longer grants EV certificates automatic reputation in SmartScreen. Signed software builds reputation through its download and usage history; the signature ties that reputation to your publisher identity.
If you added a timestamp when signing, the signature stays valid after the certificate expires. Certum's timestamp server is free; you only need to add the timestamp address to your signing command.
Ask our team about product choice and validation documents.