( ) Page: 1/5 WORK PROGRAMME ON ELECTRONIC COMMERCE ELECTRONIC SIGNATURES. Communication from Argentina, Brazil and Paraguay

Similar documents
TERMS OF USE FOR PUBLIC LAW CORPORATION PERSONAL CERTIFICATES FOR AUTHENTICATION

Resolution adopted by the General Assembly. [on the report of the Sixth Committee (A/56/588 and Corr.1)]

Economic and Social Council

CHAPTER 308B ELECTRONIC TRANSACTIONS

TERMS OF USE FOR PUBLIC LAW CORPORATION CERTIFICATES OF SECURE APPLICATION

10 October 2018 Without prejudice

1 ELECTRONIC COMMUNICATIONS IN CONTRACTUAL TRANSACTIONS 2 DRAFT TABLE OF CONTENTS 3 PART 1 4 GENERAL PROVISIONS

Archival Legislation in Singapore

OBJECTS AND REASONS

Electronic Document and Electronic Signature Act Published SG 34/6 April 2001, effective 7 October 2001, amended SG 112/29 December 2001, effective 5

ARRANGEMENT OF SECTIONS PART I PRELIMINARY

DigiCert, Inc. Certificate Subscriber Agreement

"Certification Authority" means an entity which issues Certificates and performs all of the functions associated with issuing such Certificates.

Class Unification of Law - Uniform Law (Rechtsvereinheitlichung) Summer term 2016

Tentative Translation ELECTRONIC TRANSACTIONS ACT, B.E (2001) 1

MSC TRUSTGATE.COM RELYING PARTY AGREEMENT

ELECTRONIC DATA INTERCHANGE (EDI) TRADING PARTNER AGREEMENT

Implementing the legal provisions of the Framework Agreement on Paperless Trade Facilitation

ASEAN ELECTRONIC COMMERCE LEGISLATION COMPARISON TABLE (version dated 1 Dec 2000) MATRIX UNCITRAL Singapore Brunei Thailand Malaysia Philippines

General Assembly. United Nations A/CN.9/WG.I/WP.42/Add.1

Article III - ( ) ELECTRONIC SIGNATURES AND RECORDS ACT

OPTIMUMSSL RELYING PARTY AGREEMENT

Presidential Decree No. 513 of 10 November 1997

Subscriber Agreement for (a) the e-id Account and (b) the Certificates within the National Electronic Identity Card

Class Unification of Law - Uniform Law (Rechtsvereinheitlichung) Summer term 2017

NOTE ON THE EXECUTION OF A DOCUMENT USING AN ELECTRONIC SIGNATURE

Australia s accession to the UN Convention on the Use of Electronic Communications in International Contracts consultation paper

Chapter 10 Information Technology (Amendment) Act, 2008

Relying Party Agreement. 1. Definitions

DOCUMENTARY, VOICE IDENTIFICATION AND E-EVIDENCE -- FOUNDATIONAL REQUIREMENTS W. David Lee Superior Court Judges Fall Conference October 23-26, 2007

B-TRUST DISCLOSURE STATEMENT OF THE QUALIFIED CERTIFICATION SERVICE PROVIDER BORICA AD

eidas-regulation - Electronic Identification and Trust Services for Electronic Transactions in the Internal Market

REPUBLIC OF THE PHILIPPINES DEPARTMENT OF TRADE AND INDUSTRY DEPARMENT OF BUDGET AND MANAGEMENT BANGKO SENTRAL NG PILIPINAS

27 July 2017 Without prejudice TITLE [XX] DIGITAL TRADE

GATEKEEPER ABN-DSC SUBSCRIBER AGREEMENT INSTRUCTIONS

INSTRUCTIONS FOR USE

E/ESCAP/PTA/IISG(2)/CRP.2

UNCITRAL Model Law on Electronic Commerce with Guide to Enactment 1996 With additional article 5 bis as adopted in 1998

(c) In addition to complying with the terms of the CPS, Company shall comply with each of the following obligations:

UNITED NATIONS COMMISSION ON INTERNATIONAL TRADE LAW (UNCITRAL) UNCITRAL Model Law on Electronic Commerce with Guide to Enactment 1996

NOTICE 888 OF 2012 DEPARTMENT OF COMMUNICATIONS ELECTRONIC COMMUNICATIONS AND TRANSACTIONS AMENDMENT BILL, 2012

Exploratory seminar on e-signatures for e-business Transactions. South Mediterranean Region

GEOTRUST RELYING PARTY AGREEMENT

FRL Registry BV. Terms & Conditions for the registration and usage of.frl domain names

THE INFORMATION TECHNOLOGY ACT, 2000 ARRANGEMENT OF SECTIONS

Draft ETSI EN V2.0.6 ( )

Digital Signature and DIN

NASS Support for the Revised National Electronic Notarization Standards

WACOM esignature Solutions Compliance with European e-signature legislation

Model Law on Electronic Evidence

Framework Act on Electronic Commerce

UNCITRAL E-SIGN UETA COMPARISON 1

"Certification Authority" means an entity which issues Certificates and performs all of the functions associated with issuing such Certificates.

Electronic Administration in Iceland

International Identity Management Law and Policy Meeting

1. Electronic means relating to technology having electrical, digital, magnetic, wireless, optical, electromagnetic, or similar capabilities.

RULES OF TENNESSEE DEPARTMENT OF ENVIRONMENT AND CONSERVATION CHAPTER ELECTRONIC REPORTING TABLE OF CONTENTS

Economic and Social Council

TENNESSEE CODE TITLE 8. PUBLIC OFFICERS AND EMPLOYEES CHAPTER 16. NOTARIES PUBLIC PART 1 QUALIFICATIONS

EasyChat TERMS OF USE AGREEMENT

ELECTRONIC COMMUNICATIONS AND TRANSACTIONS ACT, ACT NO. 25 OF 2002 [ASSENTED TO 31 JULY 2002] [DATE OF COMMENCEMENT: 30 AUGUST 2002]

The Malawi Gazette Supplement, dated 4th November, 2016, containing Acts (No. 6C) MALAWI GOVERNMENT

General Framework of Electronic Voting and Implementation thereof at National Elections in Estonia

OFFICIAL POLICY. Policy Statement

Subpart A General Provisions

Ballot Reconciliation Procedure Guide

E-Transactions Comparative Law Analysis

TERMS AND CONDITIONS OF USE OF THE ELECTRONIC EXCHANGE SYSTEM. external experts in the context of EU funding programmes.

CERTIFICATE SUBSCRIBER AGREEMENT FOR DIGITAL CERTIFICATES

INFORMATION TECHNOLOGY ACT, 2000 (as amended by Information Technology Act, 2008)

EuropeanSSL Relying Party Agreement ("Agreement")

FINAL REPORT ON THE LAW OF INFORMATION TECHNOLOGY

Resolution adopted by the General Assembly on 23 November [on the report of the Sixth Committee (A/60/515)]

NASS Resolution Reaffirming Support for the National Electronic Notarization Standards

United Nations Centre for Trade Facilitation and Electronic Business (UN/CEFACT)

Website Standard Terms and Conditions of Use

UNITED NATIONS CONVENTION ON THE USE OF ELECTRONIC COMMUNICATIONS IN INTERNATIONAL CONTRACTS

Conditions for the supply of Certification Services Qualified certificates

REMOTE ACCOUNT TRANSFER SERVICE AGREEMENT

END-USER SOFTWARE LICENSE AGREEMENT FOR TEKLA SOFTWARE

Explanatory note to the Framework Agreement on Facilitation of Crossborder Paperless Trade in Asia and the Pacific

Trustwave Subscriber Agreement for Digital Certificates Ver. 15FEB17

Class Unification of Law - Uniform Law (Rechtsvereinheitlichung) Summer term 2015

ACT ON PROMOTION OF INFORMATION AND COMMUNICATIONS NETWORK UTILIZATION AND INFORMATION PROTECTION, ETC.

JOB(06)/158 **May 2006 COMMUNICATION FROM CHINA AND PAKISTAN. Proposed disciplines on Domestic Regulation Under Article VI.

AT&T. End User License Agreement For. AT&T WorkBench Application

Electronic Transactions Act, Act, Act 772 ARRANGEMENT OF SECTIONS. Object and scope of the Act

DELAWARE CODE TITLE 6. COMMERCE AND TRADE SUBTITLE II. OTHER LAWS RELATING TO COMMERCE AND TRADE CHAPTER 12A. UNIFORM ELECTRONIC TRANSACTIONS ACT

CLINICAL TRIAL AGREEMENT [Identification of the trial, Person in charge of research] Sponsor of the Trial: Institution:

EU Exporters to Canada. Registered Exporters System (REX) APPLICATION FORM FOR REGISTRATION AND GUIDANCE NOTES

A whitepaper prepared by Michalsons Attorneys concerning the benefits of using the impression

ECA Digital Certificate Foreign Subscribers Forms Packet

Use of E-Signature in Proof of Contracts Concluded through the Internet in Jordan

ELECTRONIC TRANSACTIONS LAW

Cross Border recognition of authentication methods/electronic signatures

E/ESCAP/PTA/IISG(3)/CRP.1

Identity Documents Act

Legislative Brief The Information Technology (Amendment) Bill, 2006

BILL, Explanatory. (These notes form no part of the Bill but are intended only to indicate its general purport)

EXHIBIT D THE UNITED NATIONS CONVENTION ON THE USE OF ELECTRONIC COMMUNICATIONS IN INTERNATIONAL CONTRACTS WITH AMERICAN COMMENTARY

Transcription:

JOB/GC/115, JOB/CTG/3 JOB/SERV/247, JOB/IP/20 JOB/DEV/41 21 December 2016 (16-6995) Page: 1/5 General Council Council for Trade in Goods Council for Trade in Services Council for Trade-Related Aspects of Intellectual Property Rights Committee on Trade and Development Original: English WORK PROGRAMME ON ELECTRONIC COMMERCE ELECTRONIC SIGNATURES Communication from Argentina, Brazil and Paraguay The following communication, dated 15 December 2016, is being circulated at the request of the delegations of Argentina, Brazil and Paraguay. 1.1 Electronic signature (e-signature) encompasses a broad range of digital solutions aiming to ensure the authenticity, integrity and privacy of online domestic and cross-border transactions and communications. An electronic signature uses electronic data to ascertain the identity of the sender of an email or the purchaser of an on-line service. In its basic format, an e-signature does not require an independent official third party for certification purposes. 1.2 In its more sophisticated version, an electronic signature, known as advanced electronic signature or digital signature, is based on an electronic file (an advanced digital certificate) that acts like a full digital identity, allowing safe and unequivocal identification of the author of an electronic message or a digital transaction. The digital certificate must be issued by a trustable third party an official or accredited Certification Authority -, which will associate any natural person or any juridical person to a pair of cryptographic keys. A digital certificate not only enables clear identification of a person in the World Wide Web, but also ensures legal validity of any digital action using it. Digital certificates are becoming a fundamental tool for e-commerce, electronic contracts, bank operations, e-government initiatives, among other usages. For instance, an email sent with a digital certificate ensures the identity of the sender and the integrity of the message, ascertaining that its content has not been violated in any way. 1.3 The issue of e-signature and authentication has already been identified as a relevant issue in the discussions under the Work Programme on Electronic Commerce (documents JOB/GC/97/Rev.3 and JOB/GC/98). 1.4 In order to provide further input to the discussions, Argentina, Brazil and Paraguay would like to share with Members GMC Resolution 37/06, which deals with this issue within MERCOSUR. The co-sponsors are convinced that e-signature is a fundamental issue in any future consideration regarding electronic commerce in the WTO.

- 2 - MERCOSUR (Resolution GMC 37/06) Article 1 Scope of application The purpose of this Resolution is to recognize, subject to the conditions laid down hereunder, the legal value of electronic documents, of electronic signatures and advanced electronic signatures within MERCOSUR, thereby contributing to their utilization. These provisions do not apply to other aspects relating to the conclusion or validity of legal instruments where formal requirements are laid down in national laws, nor do they affect the regulations and limits set forth in national legislation governing the use of documents. This Resolution does not authorize the free movement of digital certification services within MERCOSUR. For the provision of digital certification services, the States Parties shall observe the disciplines set forth in the Protocol of Montevideo on Trade in Services in the MERCOSUR, and in their specific schedules of commitments. Article 2 Principles The States Parties shall observe the following principles: 1. Operational autonomy and permanent coordination among national infrastructures; 2. Interoperability based on international standards; 3. Exchange between States Parties of digital information and documentation under safe technical conditions, with legal validity and probative value; 4. Transparency in the management of digital certification; 5. Neutral treatment by national laws of the different technologies used for the activities set forth in this Resolution in order to allow for adaptation to the pace of technological development inherent in such activities (technology neutrality); 6. Functional interpretation of the terms and concepts in order to ensure that a particular process or technology used by a State Party is not denied legal effect solely because it has been given a nomenclature different from that provided in this Resolution. Article 3 Definitions For the purposes of this Resolution: (1) "Electronic signature" shall mean data in electronic form attached to other electronic data or logically associated with such data, used by the signatory as a means of identification. (2) "Advanced electronic signature" shall mean an electronic signature which meets the following conditions: (c) (e) It requires information known only to the signatory, so that the signatory can be uniquely identified. It is created by means that the signatory can maintain under his/her sole control. It is verifiable by third parties. It is linked to the data signed therewith in such a way that any subsequent change in the data is detectable. It is created using a signature creation device that is technically safe and reliable, and is based on a certificate that is qualified and valid at the time of signing. (3) "Digital signature" shall be used interchangeably with "advanced electronic signature".

- 3 - (4) "Signatory" shall mean a natural or legal person that legally uses an electronic signature creation device. (5) "Electronic document" shall mean the digital representation of acts or facts regardless of the medium to which they are affixed, or in which they are saved or stored. (6) "Digital document" shall be used interchangeably with "electronic document". (7) "Digital certificate" shall mean a digitally signed electronic document that links signature verification data to the signatory and confirms the signatory's identity. (8) "Qualified certificate" shall mean a digital certificate issued by an accredited service provider that meets the requirements laid down by national law. (9) "Advanced certificate" shall be used interchangeably with "qualified certificate". (10) "Certification service provider" shall mean the natural or legal person which, under national law, delivers certificates or provides other services relating to electronic signatures. Article 4 Legal effects of electronic documents and electronic signatures The States Parties recognize that electronic documents meet the handwriting requirements. Consequently, in each one of the States Parties, electronic documents shall have the same legal effects as written documents, subject to the exceptions provided for in national laws. The States Parties shall recognize the legal effects of electronic signatures where they are accepted as valid by the parties that use them or accepted by the persons to whom the document to which they are linked was presented. The States Parties shall ensure that the evidentiary effects of an electronic document are not denied solely because it is not connected to an advanced electronic signature, if its authenticity and integrity can be unequivocally demonstrated. The parties shall be free to agree mutually on the conditions under which they will accept electronic signatures, in accordance with their national laws. Should one of the parties not recognize an electronic signature, it shall be up to the other party to prove its validity. Article 5 Advanced electronic signature: Mutual recognition In order to ensure mutual recognition of advanced electronic signatures and digital certificates, the States Parties may conclude mutual recognition agreements with each other. The Common Market Group (GMC) shall adopt guidelines for that purpose. These guidelines shall reflect the state of affairs at the time of their adoption, and may be updated at the proposal of Working Subgroup (SGT) No. 13 in order to keep pace with the related technological developments. Through mutual recognition agreements, advanced electronic signatures that meet the conditions set forth therein shall be accorded the same legal and probative value as is accorded to handwritten signatures. The States Parties shall recognize the authenticity and integrity of an electronic document signed with an advanced electronic signature, accepting it as documentary evidence in a court of law in accordance with the provisions of the mutual recognition agreements. In the framework of SGT No. 13, the States Parties shall indicate which bodies are authorized to sign the mutual recognition agreement.

- 4 - Article 6 Qualified digital certificates The mutual recognition agreements shall establish the conditions under which digital certificates issued by a State Party to the agreement shall have the same legal validity in the other States Parties to the Agreement. These conditions must require, at the minimum, that the digital certificates: are issued by a certification service provider that is accredited under the national accreditation and control system provided for in Article 7; respect the internationally recognized standard formats laid down by the implementing authority of each State Party; (c) meet the minimum criteria set forth in the guidelines mentioned in Article 5; contain, at the minimum, sufficient data to: 1. identify beyond doubt the owner and the certification service provider that issued the certificate, indicating its period of validity and data by which its unique identity can be established; 2. be verifiable in terms of revocation status; 3. clearly differentiate between verified and unverified information included in the digital certificate; 4. be able to verify the signature; 5. identify the certification policy under which it was issued. Article 7 Provision of certification services The States Parties shall not subject the provision of certification services to prior accreditation except in the case of those connected to an advanced electronic signature in accordance with the terms of this Resolution. The States Parties shall create a suitable accreditation and control system for certification service providers established in their respective territories that issue qualified certificates by which advanced electronic signatures can be verified. The States Parties may subject the use of electronic signatures and advanced electronic signatures in the public sector to possible additional requirements. These requirements shall be objective, transparent, proportionate, and non-discriminatory, and shall relate only to the specific characteristics of the application concerned. These requirements shall not act as an obstacle to cross-border services. Article 8 Liability States Parties shall ensure, at the minimum, that a certification service provider accredited pursuant to Article 7 is liable for damage caused to any natural or legal person that had reasonable confidence in the digital certificate issued by that provider with respect to the following: all fields and data required by the respective national infrastructures for the qualified certificate are included and accurate at the time of issue; at the time the qualified certificate is issued by the accredited certification service provider, the signature identified therein reflects the signature creation data corresponding to the verification data contained in the provider's qualified certificate, in order to guarantee the chain of trust;

- 5 - (c) any errors or omissions in the said qualified certificates or failure to follow the certification procedures established in the mutual recognition agreements; where appropriate, proper and timely registration of the revocation of the qualified certificates issued. It is up to the accredited certification service provider to demonstrate that it acted neither negligently nor intentionally. The States Parties shall ensure that the certification service provider accredited pursuant to Article 7 can indicate in a qualified certificate, in a manner that is identifiable by third parties, the limits of its utilization. The certification service provider accredited pursuant to Article 7 shall not be liable for damage resulting from the utilization of a qualified certificate it has issued if such utilization exceeds the scope defined in its certification policy, nor shall it be liable for any inaccuracies in the qualified certificate resulting from verified information supplied by the owner, provided the accredited certification service provider can demonstrate that it has complied with all the conditions set forth in its certification policies and procedures. Article 9 Protection of personal data The States Parties shall ensure that a certification service provider that issues qualified certificates for the public may only collect personal data directly from the person to which such data refer, after having obtained the express consent of that person and only to the extent that such data are necessary to issue and maintain the certificate. The data shall not be obtained or used for any other purpose without the express consent of the owner. The States Parties shall guarantee the confidentiality of the other personal data required to issue the qualified certificate that do not appear therein, in accordance with the terms of this article.