Skip to content
Last updated

Evidence and affidavits

Namirial Notify records evidence during certified communication and signature workflows so that relevant events and outcomes can be certified.

An affidavit is a PDF document that certifies one or more recorded evidence items. Namirial Notify electronically signs and timestamps the document, and it summarizes the relevant events and results according to the configured certification level. Users can independently validate an affidavit by using the QR code or signature certificate included in the document.


Evidence versus affidavit

An evidence item is a recorded event or data point associated with a transaction, such as:

  • a communication being processed
  • a notification being delivered
  • a recipient opening or rejecting a notice
  • a signer completing a signature step
  • a postal operator reporting delivery or failure

An affidavit is the formal PDF document generated from one or more of those recorded evidence items.

In practice:

  • evidence is the recorded transaction data
  • affidavits are the signed PDF documents that certify that data

What an affidavit typically contains

Depending on the service and event type, an affidavit can include:

  • identification of the evidence, such as the unique identifier, date, and service type
  • issuer and recipient information
  • content information, such as subject, size, attachments, or document references
  • the certified events and timestamps associated with the transaction
  • technical and contextual data, such as authentication method, IP address, browser, or geolocation when applicable
  • validation information, including a QR code and signature certificate details

Affidavit options example


Affidavit fields reference

The first page of an affidavit is structured around the following sections and fields. Not all fields appear in every affidavit — availability depends on the service, certification level, and the event being certified.

Evidence identification

FieldDescription
IdentifierUnique alphanumeric UUID that identifies the evidence within the platform (e.g. b70c6811-532c-4eb3-bebc-e47d5d2d3132).
Admission dateDate and time at which the communication was admitted for certification.
Type of evidenceThe service that generated the evidence (EviNotice, EviMail, EviSMS, EviSign, or EviPost).

Issuer details

FieldDescription
IssuerThe platform user or account that issued the communication.
Address of senderThe address (email, phone number, etc.) used to send the communication.

Recipient details

FieldDescription
RecipientName or identifier of the person or organization receiving the communication.
Recipient's addressThe email address, phone number, or other channel address of the recipient.
With copy to (CC)Additional recipients who received a copy, when this feature was used.

Content details

FieldDescription
SubjectBrief description of the content of the communication.
SizeSize of the message in bytes.
Number of attachmentsCount of files attached to the communication.
Message authentication codesSHA-256 cryptographic hash of the message content, used to verify integrity.

Actor data

Actor data is recorded for each event in the process and captures contextual information about who triggered it and from where.

FieldDescription
Authentication methodHow the actor authenticated to the platform (e.g. username and password, PIN).
Actor identifierIdentity of the actor — for issuers, typically their email address.
IP addressIP address of the actor at the time of the event.
GeolocationCoordinates derived from the IP address or browser geolocation, when available.
Operating systemOperating system details of the actor's device.
Browser IDBrowser name and version used by the actor.
Browser languageLanguage setting of the actor's browser.
Browser user agentFull user-agent string of the actor's browser.

Cryptographic and verification elements

FieldDescription
QR codeA QR code or data matrix printed on the affidavit. Scanning it gives access to the platform URL where the evidence can be verified. This allows the affidavit to retain its legal guarantee even when printed on paper.
Public key of the signing certificateThe public key of the X.509v3 certificate used to sign the affidavit, included so the signature can be independently verified.
Universal locatorA unique URL-based identifier generated following IETF RFC 4122 / ISO/IEC 9834-8. It allows issuer and recipient to access the evidence from the internet and appears on every page of the affidavit.

Attachment and content pages

If the communication included attachments, a dedicated page follows the first page with details and the cryptographic summary (SHA-256 hash) of each attached file.

Subsequent pages contain the content of the certified event — for example, the body of the certified email or the text of the certified notice.


How affidavits are generated

Namirial Notify generates affidavits from specific events recorded during the transaction lifecycle.

Depending on the service, certification level, and selected affidavit options:

  • a process can generate multiple affidavits, each linked to a relevant event
  • a process can generate a summary affidavit when tracking ends
  • some affidavit kinds are created only when a specific event occurs, such as opening, acceptance, rejection, or signature completion

In general:

  • advanced certification can generate separate affidavits for multiple events
  • standard certification can generate a summary affidavit at the end of the process

Namirial Notify typically generates a summary or closure affidavit when the transaction reaches its final state.


How evidence and affidavits differ by service

EviNotice

EviNotice records evidence for notification delivery and for recipient actions on the hosted notice.

Typical affidavit-triggering events can include:

  • admission and content certification
  • notification sending and delivery
  • recipient access to the notice
  • opening of the hosted content
  • acceptance or rejection
  • refusal without opening
  • file download
  • process closure or summary generation

EviMail

EviMail records evidence for certified email delivery and, when configured, recipient interaction with the message.

Typical affidavit-triggering events can include:

  • admission and content certification
  • transmission result
  • delivery result
  • message opening
  • acceptance or rejection
  • closure or summary generation

EviSMS

EviSMS records evidence for certified SMS or RCS delivery.

Typical affidavit-triggering events can include:

  • admission and content certification
  • transmission result
  • delivery result
  • message opening, where supported by channel and configuration
  • closure or summary generation

EviSMS does not generally use the same acceptance or rejection workflow as EviNotice or EviMail.

EviSign

EviSign records evidence for the signature workflow rather than for message delivery alone.

Typical affidavit-triggering events can include:

  • admission and content certification
  • delivery of the signature request
  • signer acceptance or rejection
  • signature completion
  • signed main document or attachments
  • final notification after signing
  • summary generation at the end of the workflow

EviPost

EviPost records evidence for physical postal delivery.

Typical affidavit-triggering events can include:

  • content submission
  • postal processing
  • printing and dispatch steps
  • delivery
  • delivery failure
  • recipient rejection, where reported
  • final outcome reported by the postal operator

Common affidavit kinds by service

The available affidavit kinds depend on the service and configuration. Digital services generally expose defined affidavit kinds, while EviPost is more closely tied to postal workflow outcomes.

EviNotice

  • Submitted — admission of the message for certification
  • SubmittedAdvanced — admission with graphic representation
  • TransmissionResult — result of sending the notification to the message center or mail server
  • DeliveryResult — result of delivery of the notification to the recipient
  • Received — acknowledgement of receipt before the content is read
  • Read — acknowledgement of opening or reading of the notice
  • Committed — formal acceptance or rejection by the recipient
  • CommittedAdvanced — acceptance or rejection with graphic representation
  • Refused — formal refusal without viewing the message (refusal without opening)
  • Closed — end of tracking for the notification
  • ClosedAdvanced — end of tracking with graphic representation
  • Event — certification of a relevant technical event
  • Complete — summary affidavit for the dossier
  • CompleteAdvanced — summary affidavit with graphic representation
  • OnDemand — auxiliary affidavit requested during the process
  • Failed — processing failure that ends the workflow
  • Dispatched — certification of issuance content for the notification
  • ContentDownload — certification that content or an attachment was downloaded

ContentDownload is a special EviNotice affidavit kind. When it is requested, the submission must also set EnforceTrackingUntilTimeToLive: true; the platform rejects requests that enable only one of those two options.

EviMail

  • Submitted — admission and content certification of the certified email
  • SubmittedAdvanced — admission and content certification with graphic representation
  • TransmissionResult — result of sending the message to the destination server
  • DeliveryResult — result of delivery to the recipient
  • Read — confirmation that the recipient opened the message
  • Committed — formal acceptance or rejection by the recipient
  • CommittedAdvanced — acceptance or rejection with graphic representation
  • Closed — end of tracking for the certified email
  • ClosedAdvanced — end of tracking with graphic representation
  • Complete — summary affidavit for the dossier
  • CompleteAdvanced — summary affidavit with graphic representation
  • OnDemand — auxiliary affidavit requested during the process
  • Event — certification of a relevant fact without a specific kind
  • Failed — processing failure that ends the workflow

EviSMS

  • Submitted — admission and content certification of the certified SMS
  • SubmittedAdvanced — admission and content certification with graphic representation
  • TransmissionResult — result of sending the message to the destination server
  • DeliveryResult — result of delivery to the recipient
  • Read — confirmation that the recipient opened or read the message, where supported
  • Closed — end of tracking for the certified SMS
  • ClosedAdvanced — end of tracking with graphic representation
  • Complete — summary affidavit for the dossier
  • CompleteAdvanced — summary affidavit with graphic representation
  • Event — certification of a relevant fact without a specific kind

EviSign

  • Submitted — admission and content certification of the signature request
  • SubmittedAdvanced — admission and content certification with graphic representation
  • SignatureRequestResult — result of sending the signature request to a specific signer
  • FinalNotificationResult — result of sending the final notification after signing
  • PartyCommitted — certification that a specific signer accepted or rejected the document
  • Attachment — certification of an attachment being signed or rejected
  • AttachmentMasked — certification of an attachment in masked or redacted form
  • Main — certification of the main document being signed or rejected
  • OnDemand — auxiliary affidavit requested during the process
  • Summary — summary affidavit issued at closing with recorded events
  • Event — certification of a relevant fact that does not map to a standard kind
  • Failed — processing failure that ends the workflow
  • SignatureRequestDispatched — certification of the issuance content for the signature request
  • FinalNotificationDispatched — certification of the issuance content for the final notification

EviPost

EviPost affidavit generation is based on postal workflow events rather than the affidavit-kind model typically used by digital delivery and signature services.

Typical EviPost affidavits can certify:

  • content submission
  • postal processing
  • printing and dispatch
  • delivery
  • delivery failure
  • recipient rejection, where reported
  • final outcome reported by the postal operator

How to read the dossier for a transaction

When reviewing a transaction and its affidavits:

  1. Identify which service was used: EviNotice, EviMail, EviSMS, EviSign, or EviPost.
  2. Review the transaction history to see which events were recorded.
  3. Check which affidavits were generated for those events.
  4. Open the affidavit PDF to confirm the certified event, timestamp, participants, and supporting data.
  5. Use the transaction outcome together with the affidavit set to understand the full result.

Validating an affidavit

Affidavits can be independently validated in two ways.

Via QR code

Every affidavit includes a QR code on its first page. Scanning the code with any QR reader opens the platform URL where the evidence can be reviewed online. This method works even with a printed copy of the affidavit and does not require any software installation.

Via PDF digital signature in Adobe Reader

Affidavits are digitally signed PDFs. Adobe Reader (version 9 or higher) can be used to verify the electronic signature:

  1. Open the affidavit PDF in Adobe Reader.
  2. A banner at the top of the document indicates whether the document is digitally signed.
  3. Open the Signature Panel (click the signature icon or use the View menu).
  4. Select the signature entry to view its properties.
  5. Click Certificate Details to inspect the signing certificate — you can confirm the issuing certification authority (CA), the certificate validity period, and the key usage.

Common issues

Signature shows as unknown or unverified

Adobe Reader ships with a set of trusted root certificates from Adobe's Trusted Certificate List (AATL). European certification authorities (CAs) used by Namirial Notify may not be included in this list by default, which can cause the signature to appear as unknown.

To resolve this, you can:

  • Add the CA via Adobe Trusted Identity Manager — open the Signature Panel, right-click the signature, and select Show signature properties. From there, navigate to the root certificate and use Add to Trusted Identities, marking it as a trusted root for certified documents. See Adobe: Managing trusted identities for detailed steps.
  • Add the CA via the operating system certificate store — install the root certificate of the signing CA into your OS certificate store (Windows Certificate Store or macOS Keychain), then configure Adobe Reader to validate signatures using the operating system's certificates via Edit > Preferences > Security > Digital Signatures > Advanced Preferences > Windows Integration.

Timestamp cannot be verified

A similar issue can occur with the qualified timestamp included in advanced-certification affidavits. If Adobe Reader does not trust the root certificate of the Time Stamping Authority (TSA), it displays:

Signature is timestamped but the timestamp could not be verified.

The resolution is the same as for the signature: add the TSA root certificate to Adobe's trusted identities or to the OS certificate store and re-validate.