Infrastructure

Secure Infrastructure for Your Document Workflows

Your contracts and signed documents are important. Indigo e-Sign is built with security controls across document storage, access, authentication, and signing workflows to help protect the information you use on the platform.

Designed to support secure electronic signing and AI-powered document review for businesses.
Cloud Infrastructure
AWS & Google Cloud hosting
Transit & Rest Shield
HTTPS/TLS & 256-bit AES
Controlled Access
Role-based & tokenized links
Developer REST APIs
Webhooks, sandbox & keys

Cloud Infrastructure

Indigo e-Sign uses cloud-based infrastructure and storage services to operate the platform reliably at scale.

Industry-Leading Cloud Providers

Our Privacy Policy identifies AWS, Google Cloud, and other cloud hosting and infrastructure providers as part of the services used to operate and store information on the platform.

Reliable Document Management & Signing

This cloud-based approach supports the document management, signing, and related services provided through Indigo e-Sign, ensuring high availability and global responsiveness.

Cloud Infrastructure Node
Operational • Multi-Cloud
AWS Cloud
Secure Compute & S3 Vault
Google Cloud
AI Pipelines & Storage
System Uptime 99.9% High Availability
Data Isolation Tenant Sandboxed

Redundant cloud microservices maintain continuous document accessibility, data backups, and low-latency processing.

Protecting Data in Transit and at Rest

Security starts with protecting information while it moves through the platform and while it is stored. These measures help protect documents and other information handled through Indigo e-Sign.

HTTPS/TLS Encryption for Data Transmission

All data in motion between signers, review engines, and our infrastructure is secured with modern HTTPS and TLS encryption.

Encryption of Data at Rest (256-Bit Standard)

Stored contract files, audit records, and metadata are encrypted on server drives with bank-grade 256-bit encryption.

Encrypted Cloud-Storage Integration

Third-party cloud storage connectors handle authorization tokens with specialized encryption and key rotation.

Cryptographic Security Metrics 256-Bit AES
Transit Protocol TLS 1.3 / HTTPS
Storage Encryption AES-256-GCM
Password Hashing Django PBKDF2
Data Shield Status
Full-Spectrum End-to-End File Isolation

Controlled Access to Documents

Not everyone should have access to every document. Indigo e-Sign uses role-based access controls and authentication to help control access to information within the platform.

Unique, Time-Limited Access Tokens

For signing sessions, participants receive unique, secure, time-limited access tokens. This allows invited participants to access their signing sessions without requiring them to create an Indigo e-Sign account.

Role-Based Access Controls (RBAC)

Organization administrators configure team permissions so team members only view and act on contracts relevant to their department or authorization tier.

Signer Token Authorization Gate Token Verified
Cryptographic Signer Token
sign_sess_9a82b4c10ef87... (Expiring Session)
Signer Permission Scope
Invited Signer • Isolated Document Access Only

Secure Authentication

Indigo e-Sign uses several measures to protect account and signing access. These controls are designed to help prevent unauthorized access and automated attacks.

Secure Token-Based Authentication

Cryptographically signed access tokens isolate signer sessions and prevent URL enumeration.

Role-Based Access Controls

Granular organizational permission structures ensure strict document visibility and editing boundaries.

Authentication Middleware

Server-level security middleware validates sessions, filters malicious requests, and blocks unauthorized route traversals.

Email OTP Verification

Time-sensitive one-time passcodes verify participant identity during sensitive login and sign-up flows.

Google reCAPTCHA Protection

Intelligent bot-detection filters defend registration, login, and signature portals against automated abuse.

PBKDF2 Password Hashing

User passwords are salted and hashed using Django's PBKDF2 algorithm, never stored in plain text.

Cloud Storage Integrations

Indigo e-Sign can connect with supported cloud storage services including Google Drive, Dropbox, and Microsoft OneDrive.

Encrypted OAuth Tokens

When you connect one of these services, Indigo e-Sign uses OAuth tokens to access your files on your behalf. These tokens are encrypted and stored securely.

Instant Disconnect & Revocation

You can disconnect an integration and revoke its access at any time, immediately removing cached credentials and severing synchronization.

OAuth Integration Shield Encrypted
Google Drive
AES Encrypted
Dropbox
AES Encrypted
Microsoft OneDrive
AES Encrypted

Monitoring and Security Updates

Indigo e-Sign's security measures include role-based access controls and monitoring, along with regular security audits and updates.

Continuous Platform Monitoring

Automated monitoring systems keep watch over server performance, API request limits, and anomalous access behaviors.

Regular Audits & Proactive Patching

Security is treated as an ongoing part of operating the platform rather than a one-time setup. Our engineers perform routine dependency patching and vulnerability scans.

Audit & Security Health Healthy
Vulnerability Scans
✓ Continuous Automated Scans Passed
Security Lifecycle
Active Patching & Monitoring Governance
Developer Ecosystem

Infrastructure for eSignature and APIs

Indigo e-Sign provides both a browser-based signing platform and REST APIs for businesses that want to integrate electronic signatures into their own applications.

  • Document Signing Workflows & Signer Routing: Programmatically create, dispatch, and order signature stages.
  • Reusable Document Templates: Deploy reusable contracts and pre-tagged signature fields via API.
  • Real-Time Webhooks: Instant automated notifications for events such as viewed, signed, and completed documents.
  • Sandbox & API Keys: Test end-to-end signing in an isolated developer sandbox environment.
// Indigo e-Sign REST API Example
POST /api/v1/documents/send/
Authorization: Bearer sec_key_live_...
{
"title": "Master Services Agreement",
"signers": [
{ "name": "Alex Taylor", "email": "alex@company.com" }
],
"webhook_url": "https://app.com/webhooks",
"events": ["viewed", "signed", "completed"]
}

Infrastructure and Document Security

Infrastructure security works together with the other security controls available across Indigo e-Sign. This gives businesses a connected approach to protecting documents throughout the signing workflow.

1
Encryption
HTTPS/TLS data transmission & 256-bit AES storage cipher.
2
Access Controls
Role-based organizational boundaries & tenant document isolation.
3
Authentication
OTP email validation, PBKDF2 hashing & reCAPTCHA defense.
4
Audit Trails
Tamper-evident logs with UTC timestamps, IP logs & SHA-256 hashes.
5
Secure Signing
Time-limited cryptographic session tokens for seamless execution.

Infrastructure FAQs

Indigo e-Sign uses cloud hosting and infrastructure services including AWS and Google Cloud, along with other service providers.
Yes. Indigo e-Sign documents and information are protected with encryption measures including HTTPS/TLS for data transmission and encryption of data at rest.
Indigo e-Sign uses role-based access controls, authentication, and secure, time-limited tokens for signing sessions.
Yes. Indigo e-Sign supports Google Drive, Dropbox, and Microsoft OneDrive integrations.
Yes. Indigo e-Sign provides REST APIs for integrating electronic signatures into applications and business workflows.

Built to Support Secure Document Workflows

Indigo e-Sign brings document management, electronic signatures, audit trails, and AI-powered document review together in one platform. Our infrastructure and security controls are designed to help businesses manage their documents and signing workflows with confidence.

Secure your documents. Simplify your workflow.
Try Indigo e-Sign Free — No Credit Card Required
Free plan available • Set up in under 60 seconds