Skip to main content
DigiCert, Sectigo and GeoTrust SSL certificates
+90 850 259 76 06 WhatsApp Support Become a Reseller
SSL Certificates
Brands
Code Signing LEI Code
Tools
Support Contact WhatsApp Cart
Language
Currency
Get an SSL Certificate
  1. Home
  2. Code Signing
  3. Cloud Code Signing
Cloud Code Signing

Cloud Code Signing Certificates

With Certum Code Signing in the Cloud, your private key is kept in Certum's hardware security module (HSM). You sign with the SimplySign app, with no USB token and no shipping to wait for.

  • No USB token needed
  • Key kept in Certum's HSM
  • Signing on Windows and macOS
Annual starting price (excl. VAT): $100.00
Products

Certum cloud code signing certificates

Prices are per year and come from our product data. See the product page for term options and details.

Cloud OV

Certum Open Source Code Signing in the Cloud

For Individual Open Source Developers (“Open Source Developer” Prefix) SimplySign Cloud Solution - No Physical Card Required Microsoft Authenticode Compatible 1 Year Validity
$100.00/yr · excl. VAT
View
Cloud OV

Certum Standard Code Signing in the Cloud

Individual & Business Use SimplySign Cloud Solution - No Physical Card Required Microsoft Authenticode & Java Compatible 1-3 Year Term Options (Certificate Up to 459 Days)
$180.00/yr · excl. VAT
View
Cloud EV

Certum EV Code Signing in the Cloud

Extended Validation (EV) SimplySign Cloud Solution - No Physical Card Required SmartScreen Reputation Builds Over Time Microsoft Authenticode & Java Compatible
$415.00/yr · excl. VAT
View
Choosing

Which certificate fits you?

All three products use the same cloud infrastructure; they differ in who the certificate is issued to and how far validation goes.

Open Source

Open source developers

For individual developers who publish open source projects.

  • The certificate is issued in the individual developer's name
  • Identity validation and a link to your open source project are required
  • For signing open source software only
Per year$100.00
View product

Standard

Companies and software developers

The standard choice for publishers of commercial software.

  • Your identity or organization is validated; the validated name is shown as the publisher
  • Authenticode, PowerShell, Java and Office VBA signing
  • Validation time depends on your documents being ready
Per year$180.00
View product

EV

Driver developers and enterprises

For those who want the most extensive organization validation.

  • The organization's legal, physical and operational existence is validated in detail
  • Required for a Microsoft Hardware Dev Center (Windows driver signing) account
  • Issued to legal entities only
Per year$415.00
View product
How it works

Signing with SimplySign

SimplySign, Certum's cloud signing service, has two parts: the mobile app on your phone and SimplySign Desktop on your computer.

1

Order and validation

You choose the product and complete the order; Certum validates your identity or your organization.

2

Activate the mobile app

You install the SimplySign app on your phone and link it to your account with the activation details from Certum. The app generates one-time codes.

3

Install SimplySign Desktop

The application you install on your Windows or macOS computer presents your certificate to the system as a virtual smart card.

4

Log in and sign

After logging in with a one-time code, you sign with tools such as signtool and jarsigner, just as if a USB token were plugged in.

A signing session is opened with a one-time code from the mobile app. If you plan to use it on unattended build servers (CI/CD), plan for this step in advance.
Comparison

Cloud signing or USB token?

Cloud signing (SimplySign)USB token
Where the private key isIn Certum's HSMOn the token sent to you
DeliveryElectronic; no shippingThe token arrives by courier
Where you can signComputers with the application installedThe computer the token is plugged into
AuthenticationOne-time code from the mobile appToken PIN
Risk of loss or failureNo physical deviceThe token can be lost or damaged
Internet connectionNeeded while signingNeeded only for timestamping
Use cases

What can you sign?

Windows Authenticode

.exe .dll .msi .cab .cat .ocx

PowerShell

.ps1 .psm1 scripts and modules

Java

.jar archives (jarsigner)

Office VBA

Word, Excel and PowerPoint macro projects

macOS and iOS apps are signed with Apple's Developer ID certificates, and Android apps with the developer's own key; a code signing certificate is not used for those platforms.
FAQ

Frequently asked questions

What is a cloud code signing certificate?

It is a code signing certificate whose private key is kept in the certificate authority's hardware security module (HSM) instead of on a USB token sent to you. You sign through an application installed on your computer; the signature is as valid, and looks the same, as one made with a USB token.

How much does a cloud code signing certificate cost?

At DATASSL, Certum cloud code signing certificates start at $100.00 per year (excl. VAT). Current prices are shown on the product cards on this page.

Do I need to buy a USB token or card reader?

No. The key is stored in Certum's HSM; no physical token, smart card or card reader is needed. What you need is the SimplySign app on your phone and SimplySign Desktop on your computer.

Which operating systems can I sign on?

SimplySign Desktop is available for Windows and macOS. The mobile app runs on iOS and Android phones.

Can a company get the Open Source certificate?

No. Open Source Code Signing is for individual open source developers and is used only to sign open source software. Companies should choose the Standard or EV product.

Does an EV certificate remove the SmartScreen warning immediately?

No. Since 2024 Microsoft no longer grants EV certificates automatic reputation in SmartScreen. Signed software builds reputation through its download and usage history; the signature ties that reputation to your publisher identity.

What happens to my signed software when the certificate expires?

If you added a timestamp when signing, the signature stays valid after the certificate expires. Certum's timestamp server is free; you only need to add the timestamp address to your signing command.

Not sure which product fits?

Ask our team about product choice and validation documents.