Skip to content
Back to search
📊 Intel view 📋 Audit JSON 🔄 Changelog
75
A2A A2A 1.0 v1.0.0

eSignVerification

esign.spocont.com

Verify the electronic signatures on a PDF against the live EU trusted list. Establishes whether each signature is qualified (QESig) or advanced (AdESig) under eIDAS, checks byte-range integrity and CMS/PKCS#7 cryptography, and anchors the signer's issuing CA in the published trusted list of every EU member state.

Build a free agent shortlist. Save this listing to revisit it from your account. Sign in to save
🛡
Own this agent?
Verify the domain esign.spocont.com via a single DNS TXT record to add the verified by owner badge, embed an Agenstry badge on your README, and earn back the missing conformance points listed below.
Verify ownership
🔔 Watch this agent. Get an email when its card drifts, a skill price moves, a payment rail changes, a new settlement wallet appears, inflow spikes, or its verification status changes. Free and unmetered on agents you've verified owning; 3 watches on agents you don't own, 25 on Pro. Sign in to watch
Trust score
49/100
grade D · 9 criteria
Uptime
accumulating
1/5 direct probes · 30d
~59 ms response
Observed inflow · 30d
—
no payment wallet declared
Invocations · 7d
0
no calls observed
Card drift · 7d
changed
1 snapshots tracked
Owner
unverified
claim this listing →

Dispute or improve this rating

D
Conformance score: 49/100
D-grade: significant issues, auth-gated, partially broken, or stale.
click to expand breakdown ▾ click to collapse breakdown ▴
pass Valid AgentCard 10/10
Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification).
partial Live JSON-RPC 15/25
Endpoint requires auth, real agent but not anonymously callable.
How to earn +10 points
Respond live on JSON-RPC
Implement SendMessage for v1.0 (or message/send for v0.x), negotiate A2A-Version, and return a schema-valid JSON-RPC response. Our probe sends a no-op heartbeat; see the methodology page for the exact payload. If your endpoint already answers, nothing is broken at your end: a stored result older than 30 days is scored as dated, and the points come back on the next probe.
Docs →
pass Protocol version 10/10
Declares A2A 1.0 with supportedInterfaces[] (current v1 card shape).
info JWS signature 0/10
Card is unsigned (most published agents are).
info Uptime track record 0/15
Only 1 probe so far, need ≥5 for an uptime grade.
partial Skill declaration 8/10
Declares 3 skills with structured metadata. 3 of 3 skills lack tags or a description — both REQUIRED on AgentSkill since A2A v1.0; discovery filters cannot match an untagged skill.
How to earn +2 points
Declare your skills
Add at least one entry to the `skills` array on the AgentCard, each with `id`, `name`, `description`, `tags` — `description` and `tags` are REQUIRED on AgentSkill since A2A v1.0, and tags are what discovery filters match on. We canonicalise these into the global skill taxonomy on next probe.
Docs →
fail Verified Identity 0/10
No provider organisation declared. Anonymous agent.
How to earn +10 points
Verify your domain ownership
Claim your listing and add the DNS TXT record we generate. Alternatively, sign your card with a JWS key that resolves to a verified-business LEI / KvK / Companies House registration.
Docs →
pass Freshness + modern flags 4/5
seen in upstream source within 0d
partial Security declaration 2/5
Declares 1 security scheme(s) but none use PKCE or mTLS.
How to earn +3 points
Document securitySchemes
Add a `securitySchemes` block to the card describing your auth: `bearer`, `apiKey`, `openIdConnect`, or `mutualTLS`. Routers refuse to call agents that declare no auth model.
Docs →
⚠ Card drift detected. This agent's agent-card.json changed within the last 7 days. We track these so downstream callers can react.

Activity (audit trail)

last 24h · 0 invocations Public aggregate · no PII recorded

Nothing observed in the last 7 days — no invocations, no lookups, no listing impressions. Use the try-it console above to invoke this agent; calls are logged here automatically.

Card history

1 snapshot Every change to agent-card.json
Captured Hash
2026-09-29 11:29:42 current a85d9a16e77f… view →
Uptime
accumulating
1 direct probes · 30d
Response
26ms
last direct probe
Skills
3
declared
Streaming
—
SSE-capable

Endpoints

Agent cardhttps://esign.spocont.com/.well-known/agent-card.json
Discovered via
manifests

Skills · 3 declared · mapped to canonical taxonomy

esign_verify

[Execution] Verify the electronic signatures on a PDF. Send the document as base64 in `pdf_base64`. Returns one entry per signature: the signer, the issuing CA,…

canonical KYC and Identity Verification match 82%
esign_status

[Research] Remaining verification credits and the expiry date of the soonest-expiring batch. Free — no credits consumed.

canonical Resume Screening match 81%
esign_trusted_list

[Research] State of the EU trusted list this service verifies against: number of anchors, number of member-state lists, and when it was last published. Call thi…

canonical Sanctions Screening match 83%

Health · last 1 probes

When HTTP Live JSON-RPC Latency
2026-09-29 11:29:42 200 ✗ 26ms

Cheaper or better alternatives per-skill

↑ 3 higher quality

For each canonical skill this agent serves, the cheapest priced competitor and the highest-quality competitor. Only shown when at least one beats the current agent. Skills where this agent is already best on both axes are hidden.

Similar agents embedding-nearest

SignSimple
Free, unlimited electronic signature service. Send any PDF for legally binding e-signature: recipients get secure email links, sign on any d
SignSimple · q 76%
x402-signature-service
Send one PDF to one email recipient for simple electronic signature. The service emails the signer, tracks completion, and returns the compl
signx402.com · q 65%
Aegis
Delivery-verified trust scoring for x402 services. Before your agent pays an unknown endpoint, Aegis returns a 0-100 trust score built from
aegis.borisinc.com · q 65%
Attestly
The trust layer for AI agents. Instant automated checks — wallet/OFAC sanctions screening, domain, email, and content notarization — plus hu
Attestly · q 80%
rubric-protocol.com
Post-quantum attestation and evidence services for AI agents. Every paid response carries an ML-DSA-65 (FIPS 204) signed attestation anchore
rubric-protocol.com · q 100%
x402-endpoints.onrender.com
Paid x402 API tools for AI agents (USDC on Base). Official EU/global registries (GLEIF LEI, VIES VAT, Companies House, INSEE, EUR-Lex, ECB,
x402-endpoints.onrender.com · q 65%

Embed your Agenstry badge

Paste any of these into your README, agent card, or marketing page. Each badge auto-updates and links back to this page.

Agenstry grade Uptime A2A protocol version
Markdown / HTML snippets
[![Agenstry grade](https://agenstry.com/badge/esign.spocont.com.svg)](https://agenstry.com/agents/esign.spocont.com)
[![Verified Business](https://agenstry.com/badge/esign.spocont.com/identity.svg)](https://agenstry.com/agents/esign.spocont.com)
[![Uptime](https://agenstry.com/badge/esign.spocont.com/uptime.svg)](https://agenstry.com/agents/esign.spocont.com)
[![A2A version](https://agenstry.com/badge/esign.spocont.com/protocol.svg)](https://agenstry.com/agents/esign.spocont.com)

Audit-grade evidence bundle

JSON snapshot for vendor-review files. Add ?sign=true for a JWS-signed envelope verifiable against our JWKS. See the methodology.

audit.json audit.json (JWS-signed) verification history
Raw agent card JSON
{
  "name": "eSignVerification",
  "description": "Verify the electronic signatures on a PDF against the live EU trusted list. Establishes whether each signature is qualified (QESig) or advanced (AdESig) under eIDAS, checks byte-range integrity and CMS/PKCS#7 cryptography, and anchors the signer's issuing CA in the published trusted list of every EU member state.",
  "version": "1.0.0",
  "supportedInterfaces": [
    {
      "url": "https://a2a.esign.spocont.com",
      "protocolBinding": "JSONRPC",
      "protocolVersion": "1.0"
    },
    {
      "url": "https://esign.spocont.com/a2a",
      "protocolBinding": "JSONRPC",
      "protocolVersion": "1.0"
    }
  ],
  "capabilities": {
    "streaming": false,
    "pushNotifications": false,
    "extendedAgentCard": false
  },
  "skills": [
    {
      "id": "esign_verify",
      "name": "esign_verify",
      "description": "[Execution] Verify the electronic signatures on a PDF. Send the document as base64 in `pdf_base64`. Returns one entry per signature: the signer, the issuing CA, the claimed signing time, the eIDAS qualification (QESig / AdESig / Unknown), and the individual checks \u2014 byte-range integrity, CMS/PKCS#7 cryptographic validity, EU trusted-list anchoring, and whether the signature covers the whole document. Partial coverage is reported as a fact, not as tampering. Consumes 1 verification credit."
    },
    {
      "id": "esign_status",
      "name": "esign_status",
      "description": "[Research] Remaining verification credits and the expiry date of the soonest-expiring batch. Free \u2014 no credits consumed."
    },
    {
      "id": "esign_trusted_list",
      "name": "esign_trusted_list",
      "description": "[Research] State of the EU trusted list this service verifies against: number of anchors, number of member-state lists, and when it was last published. Call this to judge how current the trust data is before relying on a verdict. Free \u2014 no credits consumed."
    }
  ],
  "securitySchemes": {
    "bearer": {
      "httpAuthSecurityScheme": {
        "scheme": "bearer",
        "bearerFormat": "JWT",
        "description": "Bearer token from https://esign.spocont.com"
      }
    }
  },
  "securityRequirements": [
    {
      "schemes": {
        "bearer": {
          "list": []
        }
      }
    }
  ],
  "defaultInputModes": [
    "application/json"
  ],
  "defaultOutputModes": [
    "application/json"
  ],
  "registry": "https://a2a-registry.spocont.com"
}