{
  "checkedAt": "2026-09-11",
  "purpose": "Offentliga DSS-testfiler; inget kunddokument. Resultaten gäller dessa körningar, inte en viss leverantörs efterlevnad.",
  "endpoint": "https://ec.europa.eu/digital-building-blocks/DSS/webapp-demo/services/rest/validation/validateSignature",
  "apiVersionObserved": "6.5 (OpenAPI info.version)",
  "apiSchemaSha256": "376d3c35700d572bf3515e91d54a7362a1b51fb901897b71c84df64f80ac1a7d",
  "policyLimitations": "Tjänstens standardpolicy användes. Policynamn och diagnostik finns i rapporten, men hela serverkonfigurationen och ett låst tillitsläge har inte arkiverats. Resultat vid en senare körning kan skilja sig.",
  "repository": "https://github.com/esig/dss",
  "commit": "c8aea1f90958a851f651fe39f1575fcbd6d4a11d",
  "fixtures": [
    {
      "file": "signedXmlXadesB.xml",
      "sourceUrl": "https://raw.githubusercontent.com/esig/dss/c8aea1f90958a851f651fe39f1575fcbd6d4a11d/dss-cookbook/src/test/resources/signature-pool/signedXmlXadesB.xml",
      "sha256": "36fc5acef3ef5457c005006c595429bb23979e32884d0caffd5d706312aa0f84",
      "bytes": 7268
    },
    {
      "file": "PAdES-LTA.pdf",
      "sourceUrl": "https://raw.githubusercontent.com/esig/dss/c8aea1f90958a851f651fe39f1575fcbd6d4a11d/dss-pades/src/test/resources/validation/PAdES-LTA.pdf",
      "sha256": "876e78f407e0c163f2e6d7dd23d0f3bbcd382027de18278fa8787eab80727cda",
      "bytes": 4261525
    }
  ],
  "mutation": {
    "sourceFile": "signedXmlXadesB.xml",
    "derivedFile": "signedXmlXadesB-changed.xml",
    "before": "<test>Hello World !</test>",
    "after": "<test>Hello World ?</test>",
    "changedBytes": 1,
    "signatureDataReplaced": false
  },
  "results": [
    {
      "case": "xades-b",
      "file": "signedXmlXadesB.xml",
      "fixtureSha256": "36fc5acef3ef5457c005006c595429bb23979e32884d0caffd5d706312aa0f84",
      "responseSha256": "22608ffe565410afd2f01db098e39fdde3d233dc365f42859257b0e7b4ed2a2f",
      "validationTime": "2026-09-11T07:49:46Z",
      "policyName": "QES AES/QC AES TL based",
      "requestOptions": "signedDocument only; service default policy; no custom time or trust anchors",
      "signatures": [
        {
          "indication": "INDETERMINATE",
          "subIndication": "NO_CERTIFICATE_CHAIN_FOUND",
          "detectedFormat": "XAdES-BASELINE-B",
          "level": "N/A",
          "basicSignature": {
            "EncryptionAlgoUsedToSignThisToken": "RSA",
            "KeyLengthUsedToSignThisToken": "1024",
            "DigestAlgoUsedToSignThisToken": "SHA256",
            "SignatureIntact": true,
            "SignatureValid": true
          },
          "referenceIntegrity": [
            {
              "type": "REFERENCE",
              "dataFound": true,
              "dataIntact": true
            },
            {
              "type": "SIGNED_PROPERTIES",
              "dataFound": true,
              "dataIntact": true
            }
          ],
          "errors": [
            "The certificate chain for signature is not trusted, it does not contain a trust anchor.",
            "The algorithm RSA with SHA256 with key size 1024 is no longer considered reliable for signature creation!",
            "The algorithm RSA with SHA1 with key size 2048 is no longer considered reliable for signing certificate!"
          ]
        }
      ]
    },
    {
      "case": "xades-changed",
      "file": "signedXmlXadesB-changed.xml",
      "fixtureSha256": "e7c974f75fbc05ce7b1383eceb81941c9cc5364d6586c3958d4c294aff961a9c",
      "responseSha256": "0fb71cb76685de93df09bb7b93dd6bacbdb65e200f4770d2440da6998158faac",
      "validationTime": "2026-09-11T07:51:08Z",
      "policyName": "QES AES/QC AES TL based",
      "requestOptions": "signedDocument only; service default policy; no custom time or trust anchors",
      "signatures": [
        {
          "indication": "TOTAL_FAILED",
          "subIndication": "HASH_FAILURE",
          "detectedFormat": "XAdES-BASELINE-B",
          "level": "N/A",
          "basicSignature": {
            "EncryptionAlgoUsedToSignThisToken": "RSA",
            "KeyLengthUsedToSignThisToken": "1024",
            "DigestAlgoUsedToSignThisToken": "SHA256",
            "SignatureIntact": false,
            "SignatureValid": false
          },
          "referenceIntegrity": [
            {
              "type": "REFERENCE",
              "dataFound": true,
              "dataIntact": false
            },
            {
              "type": "SIGNED_PROPERTIES",
              "dataFound": true,
              "dataIntact": true
            }
          ],
          "errors": [
            "The certificate chain for signature is not trusted, it does not contain a trust anchor.",
            "The reference data object is not intact!",
            "The algorithm RSA with SHA256 with key size 1024 is no longer considered reliable for signature creation!",
            "The algorithm RSA with SHA1 with key size 2048 is no longer considered reliable for signing certificate!"
          ]
        }
      ]
    },
    {
      "case": "pades-lta",
      "file": "PAdES-LTA.pdf",
      "fixtureSha256": "876e78f407e0c163f2e6d7dd23d0f3bbcd382027de18278fa8787eab80727cda",
      "responseSha256": "db33b7f04ed22ed2cf705700de8e377f930840778490cd863fd4a115f30d1b54",
      "validationTime": "2026-09-11T07:51:12Z",
      "policyName": "QES AES/QC AES TL based",
      "requestOptions": "signedDocument only; service default policy; no custom time or trust anchors",
      "signatures": [
        {
          "indication": "INDETERMINATE",
          "subIndication": "NO_CERTIFICATE_CHAIN_FOUND_NO_POE",
          "detectedFormat": "PAdES-BASELINE-T",
          "level": "Indeterminate AdESig",
          "basicSignature": {
            "EncryptionAlgoUsedToSignThisToken": "RSA",
            "KeyLengthUsedToSignThisToken": "2048",
            "DigestAlgoUsedToSignThisToken": "SHA256",
            "SignatureIntact": true,
            "SignatureValid": true
          },
          "referenceIntegrity": [
            {
              "type": "MESSAGE_DIGEST",
              "dataFound": true,
              "dataIntact": true
            }
          ],
          "errors": [
            "No prospective certificate chain valid at validation time has been found!",
            "The current time is not in the validity range of the signer's certificate!",
            "The past signature validation is not conclusive!"
          ]
        }
      ]
    }
  ],
  "limitations": [
    "Ingen TOTAL_PASSED-signatur observerades i dessa tre körningar.",
    "BasicSignature.SignatureValid är ett delresultat, inte slutresultatet eller ett besked om QES.",
    "PDF-filnamnet PAdES-LTA.pdf är en testetikett; rapporten klassificerade underskriften som PAdES-BASELINE-T. Ingen generell slutsats om LTA-profiler följer av det.",
    "Inga uppgifter om avtalsavsikt eller firmateckning har verifierats."
  ]
}
