Skip to main content

Article (28) Data Retention of the Qualified Electronic Signature/Seal

1. The Qualified Electronic Signature/Seal data retention service may be provided only by a Qualified Trust Service Provider that uses the procedures and technologies capable of extending the Trust Qualified Electronic Signature/Seal authenticity period beyond the technological validity period identified by a resolution by the TDRA. Such procedures and technologies shall have no impact on the reliability of the Qualified Electronic Signature/Seal. 

2. The Qualified Trust Service Provider shall retain the authenticity of the Trust Qualified Electronic Signature/Seal for a period not less than (15) fifteen years from the retention request date. 

3. The Qualified Trust Service Provider shall retain all information necessary for verifying the validity of the Qualified Trust Service Provider up to the end of the retention period. 

4. The Qualified Trust Service Provider shall ensure the safety, quality and clarity of the Qualified Electronic Signature/Seal data retained by the same, and shall allow to be properly used by the Subscribers or another Qualified Trust Service Provider providing a Qualified Trust Service, subject to the Subscribers’ express consent. 

5. A signature or seal affixed to a retention manual issued by the Qualified Trust Service Provider must be made by using a Reliable Electronic Signature/Seal issued by the provider. 

6. The Qualified Trust Service Provider shall identify a set of adequate policies and practices to provide the service of the Qualified Electronic Signature/Seal data retention as a Qualified Trust Service. In all cases, such policies and practices shall fulfil the technical requirements and specifications of content and structure identified by a resolution issued by the TDRA. 

7. The Qualified Trust Service provider shall be responsible for providing the Qualified Trust Service according to the procedures set forth in the service practice statement and the service policy. Where the Trust Service or part thereof is provided by third parties, the Qualified Trust Service Provider shall identify the responsibility of such parties and ensure that they will comply with any controls required by the Qualified Trust Service Provider.