OxygenPDF

Xác thực chữ ký số PDF: kiểm tra người ký và toàn vẹn

Kiểm tra chữ ký số trong PDF: danh tính người ký, chuỗi chứng chỉ, thời điểm ký và phát hiện bị sửa đổi. Miễn phí, chạy hoàn toàn trên trình duyệt.

Check whether a signed PDF is still trustworthy

What verification actually checks

A PDF signature is a CMS (PKCS#7) blob embedded in the file, covering a declared byte range. This tool parses every signature dictionary, extracts the CMS structure, and runs three checks: does the signature cryptographically verify against the bytes it claims to cover, does the byte range span the whole file (so nothing was appended after signing), and what does the embedded certificate chain look like.

The result is a per-signature report: signer name and full subject, issuing CA, serial number, validity window, SHA-256 fingerprint, signing time, and a clear verdict — valid, modified after signing, or invalid.

What the report shows

Everything a verifier needs to make a trust call.

Validity verdict

Valid, modified-after-signing, or invalid — with the cryptographic check behind each call.

Certificate details

Subject, issuer, serial, validity dates, and SHA-256 fingerprint for every embedded certificate.

Signing time

The claimed signing time from the CMS attributes, plus RFC 3161 timestamp tokens when present.

Batch + JSON export

Verify several PDFs at once and export the whole result set as a JSON report for compliance records.

Tamper detection

The most important check is coverage: a signature only protects the bytes inside its byte range. If a document was modified after signing — a page added, a field changed, an incremental update appended — the signature either fails verification or provably does not cover the tail of the file. Both cases are flagged, so 'signed' never silently means 'unchanged'.

Document timestamps (ETSI.RFC3161 signatures) are recognized and reported separately, including the time the timestamping authority certified.

Local and private

Verification is pure parsing and math — no network, no upload, no OCSP or CRL fetches. The chain check reports what the embedded certificates prove on their own; whether you trust the issuing CA is a decision the report informs rather than makes.

Xác thực chữ ký số PDF: kiểm tra người ký và toàn vẹn: Câu hỏi thường gặp

Các câu hỏi thường gặp về công cụ này và cách thức hoạt động.

Miễn phí trọn đời

Toàn bộ hơn 119 công cụ — miễn phí trọn đời
Trình tạo quy trình trực quan — liên kết nhiều công cụ
Tải ứng dụng cho máy tính

Pro

$29 một lần
Xử lý hàng loạt nhiều tệp cùng lúc
Ủng hộ nhà phát triển độc lập
Đảm bảo hoàn tiền trong 14 ngày

Chúng tôi sử dụng dữ liệu phân tích để hiểu cách các công cụ được sử dụng và cải thiện trải nghiệm. Tệp cá nhân của bạn sẽ không bao giờ được gửi đi.