This is the Trace Id: c182f225d86929260f2fc277b0460e77
Skip to main content
Azure

Artifact Signing

Secure your applications with a fully managed end-to-end signing service for code, documents, applications, and more.
Easily manage signing with seamlessly integrated developer toolsets and Azure resources.
Overview

Build trust in your applications

  • Protect your applications with certificates that are fully managed through certificate authorities that are part of the Microsoft Trusted Root Certificate program and meet WebTrust certification criteria.
    A person holding a tablet
  • Start signing with minimal effort using a service that’s managed as an Azure resource and functions through the familiar tenant and subscription management experiences.
    A person talking to another person
  • Meet your organization’s signing needs with flexible options and support for Public Trust, Private Trust, VBS Enclave, and Test Trust signing.
    Two person's looking at a tablet
  • Easily code sign through integrations with Windows developer experiences including Visual Studio, GitHub, and Azure DevOps.
    A person holding a tablet and stylus
Features

Build and distribute apps securely

Fully managed certificates

Simplify certificate management with a fully managed service that protects and maintains Microsoft certificate authorities.

Integrated developer toolsets

Create seamless workflows and user experiences with familiar developer toolsets and broad file type support.

Consistent management layer

Maintain continuity with a service that’s managed as an Azure resource through familiar subscription management experiences.

Secure access control

Stay compliant and secure with both role-based access management in Azure and private keys secured with FIPS 140-2 Level 3 compliance.

Digest signing

Enable fast and reliable signing operations using digest signing, which ensures files never leave your environment.

Fast remediation

Quickly detect, investigate, and revoke certificates for improper use with signing history and actions in the Azure portal.
Security

Embedded security and compliance

34,000
Full-time equivalent engineers dedicated to security initiatives at Microsoft.
15,000
Partners with specialized security expertise.
 
>100
Compliance certifications, including over 50 specific to global regions and countries.
A person looking at a computer screen
PRICING

Artifact Signing pricing

Artifact Signing has consumption-based pricing options that fit your specific needs.

FAQ

  • Artifact Signing (formerly Trusted Signing) is a fully managed service that facilitates code signing for developers. The service provides assurances of authenticity and integrity in applications, which enhances security features that prevent and mitigate malware impacts on the Windows OS.
  • Code signing is a method to secure applications against tampering and identity falsification. The signature ensures the code has not been modified and provides information about who signed the application.
  • An Artifact Signing signature ensures that your application is trusted by providing base reputation on smart screen, user mode trust on Windows, and integrity check signature validation compliant.
  • Artifact Signing currently supports public trust, private trust, VBS enclave, and test trust signing.
  • Artifact Signing (formerly Trusted Signing) is a fully managed, end-to-end code signing service integrated with Azure. It offers:
    • Enhanced Security: Certificates and private keys are stored in FIPS 140-2 Level 3 compliant HSMs, reducing risk of compromise.
    • Simplified Certificate Management: Certificates are issued from Microsoft managed CAs and subsequently protected and managed by the service.
    • Developer-Friendly Integration: Works seamlessly with Visual Studio, GitHub Actions, and Azure DevOps for streamlined workflows.
    • Modern Windows Security Features: Enables Smart App Control, SmartScreen, and other protections that block unsigned or tampered executables.
    • Scalability and Cost Efficiency: Flexible plans for individuals and enterprises, eliminating infrastructure overhead.
  • Trusted Signing has been rebranded as Artifact Signing. The service remains the same in functionality, providing identity validation, certificate profiles, and signing capabilities.
  • There is no functional difference—Artifact Signing is simply the new name for Trusted Signing. All existing features remain unchanged.
  • If you already use Trusted Signing:
    • Your existing accounts and certificate profiles will continue to work without interruption.
    • Billing and quotas remain the same under your current plan.
    • Portal experience and APIs are unchanged, though references will update to “Artifact Signing.”
    • For an uninterrupted experience, existing customers must update references to Trusted Signing in the client tools. A full list of required changes are available at aka.ms/artifactsigningfaq. New customers don’t need to make any updates.
  • Artifact Signing uses consumption-based pricing, and has not changed from the Trusted Signing pricing:
    • Basic Plan: $9.99/month for up to 5,000 signatures; $0.005 per additional signature.
    • Premium Plan: $99.99/month for up to 100,000 signatures; $0.005 per additional signature.
    • Artifact Signing pricing model remains unchanged from Trusted Signing. Both plans continue to offer the same features as before. For full details, visit the Artifact Signing pricing page here.
A picture of a smiling woman yellow coat working on laptop
NEXT STEPS

Choose the Azure account that’s right for you

Pay as you go or try Azure free for up to 30 days.
Two persons sitting at a table and talking to each other
Azure Solutions

Azure cloud solutions

Solve your business problems with proven combinations of Azure cloud services, as well as sample architecture and documentation.
A person wearing white shirt working on the laptop
Developer tools

Find the right development tools for your needs

Build, debug, deploy, and manage cloud applications—using any platform or language.