Certification Policies & Practices
Official documentation of the trust service provider operated by ASETEC Ingeniería de Sistemas, S.L. under the Mensatek brand: the Certification Practice Statement describes the services, their security, support, administration and operating procedures. The documents are published in Spanish.
Regulation (EU) No 910/2014 of 23 July 2014 (eIDAS) establishes the common legal framework for trust service providers in the European Union, applicable to electronic identification and to services such as timestamping, electronic registered delivery or document validation. The following documents describe how these services are provided and with which guarantees.
Practice statement and disclosure
Provider certificates
Security policy
Certificate status validation
The status of the certificates issued by the certification authority backing the timestamping unit can be checked through the certificate revocation lists (CRL) and the online status service (OCSP) published by that authority and referenced in the certificates themselves. Timestamps can be verified with any RFC 3161-compliant tool.
Communication certificates issued by the group platforms can be verified publicly by their code in the verifiers of smscertificado.es (notifications) and lofirmo.com (contracts).