What Is a Digital Signature?

A digital signature uses a private key to produce a value that anyone can verify with the matching public key, proving that the holder of the key signed this exact content and that it has not changed since. It gives three things at once: authenticity, integrity, and non-repudiation — the signer cannot later deny it. It is how a verifiable credential, a signed agent action, or a sealed record proves who stands behind it.

Proves
Authenticity, integrity, non-repudiation
Made with
The signer’s private key
Checked with
The matching public key

Sign the hash, not the document

In practice a signature is computed over a hash of the content, not the content itself: the signer hashes the document and signs the hash, and a verifier re-hashes and checks. That is why a single changed byte breaks the signature — the hash no longer matches — and why signatures and hash functions are always paired.

For agents, the signature is what turns an action into an accountable one: who authorised it is not a claim in a log but a value anyone can verify against a public key held at the actor’s own domain.

Related standards

NIST FIPS 186-5 — Digital Signature Standard

Questions

Is a digital signature the same as an electronic signature?

No. An e-signature can be a typed name or an image; a digital signature is a cryptographic proof tied to a key.

What is non-repudiation?

Because only the private-key holder could have produced the signature, they cannot credibly deny having signed — the property that makes signatures accountable.

Keep reading

related
What Is Public-Key Cryptography?
related
What Is a Cryptographic Hash Function?
related
What Is Agent Attestation?
related
Verifiable Credentials for AI Agents
referenced by
What Is Selective Disclosure?
referenced by
What Is a Sybil Attack?
referenced by
Symmetric vs Asymmetric Encryption: What’s the Difference?
Trust & the Record
Verify, Don’t Trust: Verification for AI Agents
Trust & the Record
Provenance for Autonomous Actions
Trust & the Record
How Is AI Agent Reputation Earned and Verified?
Trust & the Record
Zero-Trust Architecture for AI Agents
Trust & the Record
What Is a Trust Graph for Agents?
Trust & the Record
What Is a Zero-Knowledge Proof?
Trust & the Record
What Is a zk-Rollup?
Trust & the Record
What Is a Merkle Tree?
Trust & the Record
What Is a Blockchain Oracle?
Trust & the Record
What Is Confidential Computing?
Trust & the Record
zk-Rollup vs Optimistic Rollup: What’s the Difference?
Trust & the Record
TEEs vs Zero-Knowledge Proofs: Two Roads to Privacy
Trust & the Record
What Is Mutual TLS (mTLS)?
Trust & the Record
What Is Certificate Transparency?
Trust & the Record
Hashing vs Encryption: What’s the Difference?

By Michael Gord · published 2026-10-09 · part of the Agentic Encyclopedia. Dates are the day of publication; events are cited at their own dates.