What does PAdES stand for?
PAdES stands for PDF Advanced Electronic Signatures. It is a set of European standards from the European Telecommunications Standards Institute (ETSI) that specifies how an electronic signature is embedded inside a PDF.
The important word is embedded. A PAdES signature is not a separate file or a link to a verification page. In the PAdES standard, the electronic signatures reside inside the PDF itself, along with the evidence that supports its validity, so any PDF reader can check the signature the same way. At the higher levels of PAdES (see below) you can verify it without the e-signature vendor, without an e-signature service account, and even without an internet connection.
Benefits of PAdES
At its most basic level, an electronic signature can be quite simple:
- typing your name,
- drawing your name with a with a stylus; or even
- clicking “I agree”.
They are a visual indication on a document that you have read and acknowledge something. These methods can be legally valid under the ESIGN Act and UETA in the United States. You do not need PAdES for a signature to be legally binding (in some cases). However, the PAdES standard provides several benefits:
Durability. A basic e-signature leans on the audit trail held by the platform. If that platform shuts down, the proof is harder to produce. A PAdES signature carries its proof inside the file.
European acceptance. In the European Union, eIDAS grades signatures in three tiers: simple (SES), advanced (AES) and qualified (QES). PAdES is the format used for advanced and qualified signatures. The United Kingdom kept the same structure after Brexit in its own version of eIDAS.
Tamper evidence. Change one character in a signed PDF and verification fails. That is not unique to PAdES. What PAdES adds is a standard way to perform the check, so different tools agree on the answer.
The four baseline levels
Not all PAdES signatures are alike. There are four “baseline” levels of PAdES; each building on the level before it and provides additional assurances and verification ability.
B-B stands for “Baseline Basic”
B-B simply adds the signature itself to the PDF in a specific “location” within the PDF.
“the incorporation of signed and some unsigned attributes when the signature is generated”
When creating a PAdES-B-B document, the signature and the signer’s certificate, are embdded inside the PDF. It proves who signed and that nobody has altered the file since it was signed.
When this is enough. Internal approvals. A document that will be superseded within the year. Anything where you and the other party both still exist and nobody is arguing about dates.
B-T stands for “Baseline with Timestamp”
In addition to the signature and anti-tampering evidence that level B-B provides, the B-T level appends a timestamp to prove when the document was sealed.
“a trusted token proving that the signature itself actually existed at a certain date and time”
So PAdES-B-T adds a timestamp from an independent time stamping authority (TSA). This matters more than it sounds. Certificates expire, usually after one to three years. Without a timestamp, a verifier cannot tell whether you if the PDF was signed while the certificate was valid or after it had already lapsed.
When this is enough. Most commercial contracts. An NDA, a supplier agreement, an offer letter. This is the common default across e-signature tools.
B-LT stands for “Baseline Long-Term Validation”
In addition to the signature, the anti-tampering evidence, and the timestamp, the B-LT level adds the evidence supporting these assurances into the PDF itself. This includes: the certificate chain and the revocation data proving those certificates were in good standing at signing time.
“all the material required for validating the signature in the signature document… long term availability of the validation material”
To verify a B-T level PDF, the certificate authority’s records must be fetched from the internet to complete the check. If that authority is gone in eight years or is offline, the check cannot be completed. At B-LT, the records travel with the document.
When you want this. Anything a third party may examine years from now. Property transactions. Shareholder agreements. Loan documents. Anything a bank, an auditor or a court might open long after the deal closed.
B-LTA means “Baseline Long-Term Archival”
A B-LTA PDF adds an additional timestamp after the long-term validation material has been added to the PDF. Encryption technology evenually degrades but a B-LTA PDF adds an an additional timestamp to document when the validation material was added–presumably when the cryptographic technology was still in-date and secure.
“electronic time-stamps that allow validation of the signature long time after its generation… long term availability and integrity of the validation material”
Timestamp envelopes everything in the PDF. ETSI says B-LTA “can help to validate the signature beyond many events that limit its validity, for instance the weakness of used cryptographic algorithms, or expiration of validation data.”
When you want this. Records with a statutory retention period. Employment files. Anything you must be able to prove in fifteen years.
The three extended profiles
In addition to the four baseline levels of PAdES, the ETSI standard defines three other modifiers to describe PAdES documents:
PAdES-E-BES— a basic signature with an unambiguous link to the certificate identifying the signer.PAdES-E-EPES— adds a signature policy: a reference to the rules the signature was created under. Used where a regulator or an industry body has published those rules.PAdES-E-LTV— builds on either of the above and adds long-term validity.
These allow more optional pieces than the baseline levels. That flexibility is useful when a specific regulator demands a specific arrangement.
PAdES-B-LTA documents are not valid forever!
An archive timestamp is signed by a certificate. That certificate expires. The cryptography behind it also weakens as computers improve. So the archive timestamp that protects your signature has a life of its own, and it is not unlimited.
The fix is to add a fresh archive timestamp before the old one weakens, covering everything that came before it. The standard calls this repeated LTV, and its own diagram shows one timestamp applied in 2009 and the next in 2015 — a six-year gap.
ETSI says:
So B-LTA is not a property a file has forever. It is a state that someone has to maintain. A document sealed today and left alone stays verifiable for as long as its archive timestamp holds, and no longer.
Are you shopping for a PAdES-compliant electronic signature solution? Ask vendors two questions:
- Does it reach level B-LTA?
- And does it re-timestamp documents afterwards? The second question is the one that separates a signature that lasts five years from one that lasts twenty-five.
When PAdES matters for a small business
For everyday documents — an NDA, a vendor agreement, an offer letter — a standard electronic signature with a solid audit trail does the job. The ESIGN Act does not require PAdES, and most counterparties will never ask.
It starts to matter when:
- You sign with companies in the EU or the UK, where eIDAS sets the expectation.
- You are in a regulated industry — financial services, healthcare, government contracting — where the format is specified for you.
- The document has a long life. Property, intellectual property assignments, corporate governance records.
- You want to be able to leave. A PAdES-signed document at B-LT or above stays verifiable after you switch providers. One that depends on a vendor’s verification page does not.
That last point is the practical one. The reason to care about the level is not the acronym. It is that you can still prove what you signed after the tool you used to sign it is gone.