What a signature is
A signature in Orgo is an image, not a cryptographic operation.- Sign by finger on screen. The signer draws in a box on the page. The drawing is exported from the browser as a PNG image and uploaded.
- Sign by file upload. The signer uploads a file (typically a scan or photo of a signed page). The file is stored as-is and becomes the document of record. No PDF is generated for this path.
What is stored when someone signs on screen
Three ways a document reaches “Signed”
Only the first is an e-signature. The other two are administrative records, and the difference matters if the document is ever challenged.
Sign with default signature and Pre-sign with default signature apply one reusable image stored on the template as the administrator’s countersignature. The same image is reused on every document, so it evidences that the template was approved for countersigning, not that a named person reviewed that individual document.
Where the files live
Signature images and generated PDFs are stored in Orgo’s object storage in a private bucket, never on a public address. Links to them are signed on demand and expire after 15 minutes, so a PDF link copied out of the admin screen stops working shortly afterwards. Download the file rather than sharing the link. The one exception is the reusable administrator signature stored on a template. It is served from a stable public address so it does not break inside older generated PDFs. A signed PDF can also be regenerated on demand from the frozen document text, the stored values, and the signature images. That is what Download PDF on a history entry does, and it is why a signed document from years ago still renders correctly after the template has moved on.Validity, expiry and renewal
A template with Infinite contract duration produces documents that never expire. Otherwise validity runs from the signing date for the configured number of months, unless the admin set custom dates when sending it.- A nightly job flips signed documents to Expired the day after their validity end date.
- Members are emailed 30 days before, 7 days before, on the day, and 7 days after the validity end date. Reminders go to members only, not to contacts, and only for the most recent signed copy of each document.
- A member may re-sign early, but only inside a 60 day window before the current document expires. Attempting it sooner returns the date on which re-signing opens.
- When someone re-signs inside that window, the new document starts on the day the old one ends rather than today, so the two periods run back to back with no gap. Re-signing after expiry starts from today.
Ending a signed document
Cancelled documents stay in the member’s history with a Canceled tag, the name of who cancelled them, and the date. Deleted documents are removed.
Retention and export
Signed documents are kept for as long as the member record exists; there is no automatic purge of signed e-documents. Public signing links are the exception: they are removed 72 hours after they are created. Individual PDFs are downloaded from the document row, the side panel, or the member’s own E-Documents tab. To take every signed PDF for one template at once, ask Orgo support: there is an operator command that regenerates and exports them in bulk.Are these signatures legally binding?
That depends entirely on your jurisdiction and on the document. Use the facts above rather than a general assurance:- Orgo records who signed, on what calendar date, exactly what text they saw, and an image of the mark they drew.
- Orgo does not record the time of day, the IP address, the device, or any cryptographic proof that the stored PDF has not been altered since.
Related
- E-Document Templates and Signing - templates, sending, signing and tracking
- Identity Validation - verifying who a member actually is
- Privacy Settings - what member data is visible and to whom
- Files - general document storage and share links
- Permissions - what
HR_TENANTandADMIN_TENANTunlock

