Electronic contract signing method, electronic contract signing system, and readable storage medium

By introducing a second electronic device and a second server to manage the identification code and scenario certificate in the electronic contract signing process, the problem of users being unable to supervise the signing of electronic contracts is solved, and a safe and reliable contract signing process is achieved, preventing tampering and privacy leaks.

CN113888115BActive Publication Date: 2026-01-02BEIJING ANJIE JINKE INFORMATION TECH CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202111068966.5
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2021-09-13
Publication Date
2026-01-02
Estimated Expiration
2041-09-13

AI Technical Summary

Technical Problem

The existing electronic contract signing process is transparent to users and cannot be effectively supervised, which can easily lead to economic losses and leakage of user privacy.

Method used

By introducing a second electronic device and a second server, and through the management of identification codes, digital signatures, and scenario certificates, the system ensures that users participate in and supervise the contract signing process, including identity verification, hash value calculation, and the generation and verification of scenario certificates.

Benefits of technology

It improves the security and transparency of electronic contract signing, prevents contract tampering and economic losses, protects user privacy, and enhances user experience.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN113888115B_ABST
    Figure CN113888115B_ABST
Patent Text Reader

Abstract

Embodiments of the present application provide an electronic contract signing method, an electronic contract signing system and a readable storage medium. The electronic contract signing method for the second electronic device comprises: obtaining service information according to an identification code generated by a service system, generating a to-be-signed document based on the service information; obtaining signature information; generating scene information according to the process of obtaining the signature information, so that the second server generates scene credentials and a digital signature; receiving the scene credentials and the digital signature sent by the second server, and sending the scene credentials, the digital signature and the to-be-signed document to the service system. In the process of signing the electronic contract, the second electronic device, i.e. the mobile device of the user, is introduced to jointly complete the signing of the electronic contract. The signing process of the electronic contract in the related art is adjusted to ensure that the user effectively participates, the entire signing process is safe and reliable, economic losses of the user are avoided, and the user experience is improved.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] Embodiments of the present application relate to the technical field of electronic contract signing, and in particular, to an electronic contract signing method, an electronic contract signing system and a readable storage medium. BACKGROUND

[0002] Traditional paper contract signing has the problems of being easy to be tampered with and being signed by others, and needs to be judged according to relevant standards of judicial expertise technology specification. The application of electronic contract avoids the above problems from the technical point of view, and at the same time realizes the effect of improving efficiency and reducing cost. The offline contract signing process is transferred to online, and the signing of the contract is completed through a mobile device.

[0003] For example, e-signing treasure, as a third-party platform, provides an electronic contract signing solution in the form of SaaS (software as a service), and connects the whole process of electronic contract signing of both parties on the e-signing treasure platform. The user of the contract signing can use the electronic signature service provided by it through Web (web page), H5 (digital product made with H5 language), WeChat applet and other terminal methods. However, the current signing process of electronic contract completely occurs on the electronic device of the agent, and the whole signing process is transparent to the user, and the user cannot effectively supervise the signing process of the electronic contract, which is easy to cause economic loss to the user. SUMMARY

[0004] Embodiments of the present application aim to at least solve one of the technical problems existing in the prior art.

[0005] To this end, a first aspect of embodiments of the present application provides an electronic contract signing method for a service system.

[0006] A second aspect of embodiments of the present application provides an electronic contract signing method for a second electronic device.

[0007] A third aspect of embodiments of the present application provides an electronic contract signing method for a second server.

[0008] A fourth aspect of embodiments of the present application provides an electronic contract signing system.

[0009] A fifth aspect of embodiments of the present application provides a readable storage medium.

[0010] Therefore, according to a first aspect of embodiments of the present application, an electronic contract signing method for a service system is provided, which includes: obtaining business information, generating and displaying an identification code according to the business information, so as to return a digital signature and a to-be-signed document according to the business information by a second electronic device, synthesizing the digital signature and the to-be-signed document into a signed document, and storing the signed document and a scene certificate.

[0011] The electronic contract signing method provided by the embodiment of the present application is used for a service system, and information is transmitted between the service system and the second electronic device. The second electronic device, i.e., the mobile device of the user, is introduced in the process of electronic contract signing, and the electronic contract is signed together, the signing process of the electronic contract in the related art is adjusted, the user is ensured to participate effectively, the whole signing process is safe and reliable, the economic loss of the user is avoided, and the user experience is improved.

[0012] In the process of electronic contract signing, the service system acquires business information, wherein the business information can be specific content of a contract document to be signed. An identification code is generated and displayed according to the business information, so as to return a digital signature and a document to be signed according to the business information by the second electronic device. The identification code can be a two-dimensional code or a bar code, the second electronic device can acquire the business information by scanning the identification code, and return the digital signature and the document to be signed according to the business information. The service system synthesizes the digital signature and the document to be signed returned by the second electronic device into a signed document, and stores the signed document and a scene certificate for subsequent review.

[0013] In addition, the electronic contract signing method provided by the above technical solution of the present application also has the following additional technical features:

[0014] In a possible design, the electronic contract signing method further includes: deleting the identification code based on the signed document being stored.

[0015] In this design, after the first server stores the signed document, the identification code displayed on the first electronic device previously is deleted based on the signed document being stored, so as to avoid misuse of the identification code. If the identification code is still displayed on the first electronic device, the content of the contract document is likely to be leaked, causing economic loss of both parties of the contract. Deleting the identification code can also effectively protect the privacy security of the user.

[0016] In a possible design, the electronic contract signing method further includes: sending a to-be-verified file to a second server, so as to verify whether the to-be-verified file is tampered with by the second server; and receiving a verification result returned by the second server, wherein the to-be-verified file includes a to-be-signed document to be verified.

[0017] In this design, the electronic contract signing method further includes verifying whether the to-be-signed document is tampered with. Specifically, the service system sends a to-be-verified file to a second server, the second server verifies whether the to-be-verified file is tampered with, and returns a verification result to the service system. By verifying whether the to-be-signed document is tampered with, the tampered to-be-signed document can be identified in time, so as to improve the security of contract signing and avoid causing economic loss of both parties of the contract.

[0018] In a possible design, the electronic contract signing method further includes: sending the digital signature to be verified to the second server, so that the second server verifies validity of the digital signature to be verified; and receiving a verification result returned by the second server.

[0019] In this design, the electronic contract signing method further includes verifying validity of the digital signature. Specifically, the service system sends the file to be verified to the second server, the second server verifies whether the digital signature to be verified is valid, and returns a verification result to the service system. By verifying validity of the digital signature, an invalid digital signature can be identified in time, and use of the invalid digital signature is avoided, thereby improving safety of signing and avoiding economic losses of both parties.

[0020] According to a second aspect of the embodiments of the present application, an electronic contract signing method is provided for a second electronic device, and the electronic contract signing method includes: obtaining business information according to an identification code generated by a service system, generating a document to be signed according to the business information; obtaining signature information; generating a document to be signed according to the document to be signed and the signature information; requesting a second server to generate a scene certificate and a digital signature according to scene information of the document to be signed; receiving the scene certificate and the digital signature sent by the second server, and sending the scene certificate, the digital signature, and the document to be signed to the service system.

[0021] The electronic contract signing method provided by the embodiments of the present application is used for the second electronic device, and information transmission is respectively performed between the second electronic device and the service system and between the second electronic device and the second server. The second electronic device and the second server are introduced in the process of electronic contract signing, and complete and reliable supervision and control are performed on the entire process of electronic contract signing, so that the entire signing process is safe and reliable.

[0022] In the process of electronic contract signing, the second electronic device scans the identification code displayed by the service system, obtains business information, and generates a document to be signed according to the business information, where the business information can be specific content of a contract document to be signed, and the document to be signed can be a contract document in a PDF format. The second electronic device obtains signature information of a user, that is, handwritten signature information of the user, generates a document to be signed according to the document to be signed and the signature information, and requests the second server to generate a scene certificate and a digital signature according to scene information of the document to be signed. It can be understood by those skilled in the art that the document to be signed is a contract document that has not been digitally signed. After receiving the digital signature sent by the second server, the scene certificate, the digital signature, and the document to be signed are sent to the service system. In the electronic contract signing method provided by the embodiments of the present application, the document to be signed is generated into the document to be signed after being handwritten by the user, and then is digitally signed according to the digital signature information sent by the second server. An unauthorized user cannot arbitrarily modify information saved in the document, and the document to be signed is ensured to be safe.

[0023] In addition, the electronic contract signing method provided by the above technical solution of the present application further has the following additional technical features:

[0024] In a possible design, before the step of obtaining the signature information, the method further includes: obtaining identity information indicated by the business information, verifying the identity information; and based on a result of successful verification of the identity information, performing the step of obtaining the signature information.

[0025] In this design, the second electronic device needs to authenticate the identity information of the user before obtaining the signature information, to ensure the validity of the signature information and the application of the subsequent scene certificate. The identity information of the user is verified based on the identity information indicated by the business information, to ensure that the identity information of the user is consistent with the identity information indicated by the business information. When the identity information is successfully verified, the step of obtaining the signature information is performed. If the identity information is not successfully verified, it indicates that the input identity information is inconsistent with the identity information indicated by the business information, and the identity information of the user needs to be checked, to improve the security of contract signing.

[0026] In a possible design, the step of requesting the second server to generate the scene certificate and the digital signature according to the scene information of the to-be-signed document specifically includes: obtaining the scene information of the to-be-signed document; calculating a first hash value according to the to-be-signed document, the signature information, the identity information, and the scene information; and sending the first hash value, the scene information, and the identity information to the second server, to enable the second server to generate the scene certificate and the digital signature.

[0027] In this design, the scene information of the to-be-signed document is obtained, and a first hash value is calculated according to the to-be-signed document, the signature information, the identity information, and the scene information. The first hash value, the scene information, and the identity information are sent to the second server, to enable the second server to generate the scene certificate and the digital signature. The second server generates the scene certificate and the digital signature, and feeds back the scene certificate and the digital signature to the second electronic device. After receiving the scene certificate and the digital signature sent by the second server, the second electronic device sends the scene certificate, the digital signature, and the to-be-signed document to the service system, to enable the service system to synthesize a signed document, and store the signed document and the scene certificate. The first hash value is calculated according to the to-be-signed document, the signature information, the identity information, and the scene information, which cannot be inversely deduced to obtain the plaintext, and can avoid conflicts. The first hash value is sent to the second server to generate the scene certificate, to verify whether the to-be-signed contract is tampered with and the validity of the digital signature in the later stage, thereby improving the security of the to-be-signed document and the digital signature.

[0028] In the current application, the whole process of application, issuance and application of the scene certificate is transparent to the user, non-what-you-see-is-what-you-get, no external supervision, no user supervision, and the scene certificate may be misused, causing economic losses to the user and adversely affecting the reputation of the agent. By introducing a second electronic device and a second server, the CA center as a trusted and neutral third party provides scene certificate management services in the form of the second electronic device directly connecting to the CA center, the application process of the scene certificate and the calculation process of the hash value of the to-be-signed document are performed on the mobile device of the user, which can avoid misuse of the scene certificate, the issuance process of the scene certificate and the calculation process of the digital signature are performed in the CA center, which ensures the security and authority of the digital signature, and the application, issuance and application process of the scene certificate are supervised and controlled completely and reliably, so that the scene certificate cannot be misused or stolen, and the user experience is improved.

[0029] According to a third aspect of the embodiments of the present application, an electronic contract signing method is provided for a second server, and the electronic contract signing method comprises: obtaining a first hash value, scene information and identity information sent by a second electronic device; generating a pair of keys according to the first hash value, the scene information and the identity information; generating a scene certificate according to a public key in the pair of keys and the scene information; generating a digital signature according to a private key in the pair of keys; and sending the digital signature and the scene certificate to the second electronic device.

[0030] The electronic contract signing method provided by the embodiments of the present application is used for the second server, and information transmission is performed between the second server and the second electronic device. The second server is introduced in the process of electronic contract signing, and the whole process of electronic contract signing is supervised and controlled completely and reliably, so that the whole signing process is safe and reliable.

[0031] In the process of electronic contract signing, the second server obtains the first hash value, the scene information and the identity information sent by the second electronic device, generates a pair of keys, and generates a scene certificate according to a public key in the pair of keys and the scene information; generates a digital signature according to a private key in the pair of keys, and sends the scene certificate and the digital signature to the second electronic device; the second electronic device sends the digital signature and the to-be-signed to the service system, so that the service system synthesizes the signed document and stores it. Generally, the second server is the Beijing Digital Certificate Authentication Center (referred to as CA center).

[0032] In addition, the electronic contract signing method provided by the above technical solution of the present application also has the following additional technical features:

[0033] In a possible design, the electronic contract signing method further includes: obtaining a to-be-verified file sent by the service system; calculating a second hash value according to the to-be-verified file, signature information corresponding to the to-be-verified file, scene information corresponding to the to-be-verified file, and identity information corresponding to the to-be-verified file; and determining whether the to-be-verified file is tampered with based on a relationship between the second hash value and the first hash value, where the to-be-verified file includes a to-be-signed document to be verified.

[0034] In this design, the electronic contract signing method further includes verifying whether the to-be-signed document is tampered with. Specifically, a to-be-verified file sent by the service system is obtained, a second hash value is calculated according to the to-be-verified file, signature information corresponding to the to-be-verified file, scene information corresponding to the to-be-verified file, and identity information corresponding to the to-be-verified file, and if the second hash value is the same as the second hash value, it indicates that the to-be-verified file is the same as the original to-be-signed document, otherwise it is different. By verifying whether the to-be-signed document is tampered with, the tampered to-be-signed document can be identified in time, thereby improving the security of contract signing and avoiding economic losses of both parties.

[0035] In a possible design, the electronic contract signing method further includes: obtaining a to-be-verified digital signature sent by the service system; performing operation on a scene certificate corresponding to the to-be-verified digital signature, the to-be-verified digital signature, and a first hash value corresponding to the to-be-verified digital signature according to a preset rule; and determining validity of the to-be-verified digital signature based on a result of the operation.

[0036] In this design, the electronic contract signing method further includes verifying validity of the digital signature. Specifically, a to-be-verified digital signature sent by the service system is obtained, a scene certificate corresponding to the to-be-verified digital signature, the to-be-verified digital signature, and a first hash value corresponding to the to-be-verified digital signature are operated according to a preset rule, and if the operation result is self-consistent, it indicates that the digital signature is valid, otherwise it is an invalid signature. By verifying the validity of the digital signature, the invalid digital signature can be identified in time, thereby avoiding the use of invalid digital signature, improving the security of signing, and avoiding economic losses of both parties.

[0037] In a possible design, after the step of generating the digital signature according to the private key in the pair of keys, the method further includes: deleting the private key based on a result of successful generation of the digital signature.

[0038] In this design, after the digital signature is successfully generated, to ensure the security and authority of the digital signature, the private key in the digital signature is deleted, and then the scene certificate and the digital signature are sent to the second electronic device, so that the user and the agent can verify the signed document through the public key.

[0039] According to a fourth aspect of the embodiments of the present application, an electronic contract signing system is provided, comprising: a first electronic device, the first electronic device comprising: a first memory and a first processor, the first memory storing a program or instructions, and the first processor executing the program or instructions to implement the steps of the electronic contract signing method in any of the technical solutions of the first aspect, thus having all the beneficial technical effects of the electronic contract signing method of the first aspect, which will not be repeated here; a second electronic device, the second electronic device comprising: a second memory and a second processor, the second memory storing a program or instructions, and the second processor executing the program or instructions to implement the steps of the electronic contract signing method in any of the technical solutions of the second aspect, thus having all the beneficial technical effects of the electronic contract signing method of the second aspect, which will not be repeated here; and a second server, the second server comprising: a third memory and a third processor, the third memory storing a program or instructions, and the third processor executing the program or instructions to implement the steps of the electronic contract signing method in any of the technical solutions of the third aspect, thus having all the beneficial technical effects of the electronic contract signing method of the third aspect, which will not be repeated here.

[0040] According to a fifth aspect of the embodiments of the present application, a readable storage medium is provided, which stores a program or instructions, the program or instructions being executed by a processor to implement the steps of the electronic contract signing method in any of the technical solutions of the first aspect, thus having all the beneficial technical effects of the electronic contract signing method of the first aspect, which will not be repeated here; or the program or instructions being executed by a processor to implement the steps of the electronic contract signing method in any of the technical solutions of the second aspect, thus having all the beneficial technical effects of the electronic contract signing method of the second aspect, which will not be repeated here; or the program or instructions being executed by a processor to implement the steps of the electronic contract signing method in any of the technical solutions of the third aspect, thus having all the beneficial technical effects of the electronic contract signing method of the third aspect, which will not be repeated here.

[0041] Additional aspects and advantages of the present application will be set forth in part in the description that follows, and in part will become apparent to those skilled in the art upon examination of the following description, or can be learned by practice of the application. BRIEF DESCRIPTION OF DRAWINGS

[0042] The above and / or additional aspects and advantages of the present application will become apparent and be readily appreciated from the following description, taken in conjunction with the accompanying drawings, in which:

[0043] Figure 1 A flowchart of an electronic contract signing method according to a first embodiment of the present application is shown;

[0044] Figure 2 A flowchart of an electronic contract signing method according to a second embodiment of the present application is shown;

[0045] Figure 3 A flow chart of an electronic contract signing method according to a third embodiment of the present application is shown;

[0046] Figure 4 A flow chart of an electronic contract signing method according to a fourth embodiment of the present application is shown;

[0047] Figure 5 A flow chart of an electronic contract signing method according to a sixth embodiment of the present application is shown;

[0048] Figure 6 A flow chart of an electronic contract signing method according to a seventh embodiment of the present application is shown;

[0049] Figure 7 A structural schematic block diagram of an electronic contract signing system according to a first embodiment of the present application is shown;

[0050] Figure 8 A flow chart of an electronic contract signing method according to a specific embodiment of the present application is shown. DETAILED DESCRIPTION

[0051] In order to enable a more clear understanding of the above-mentioned objects, features and advantages of the present application, the present application will be further described in detail below with reference to the drawings and specific embodiments. It should be noted that the embodiments of the present application and the features in the embodiments can be combined with each other without conflict.

[0052] In the following description, a lot of specific details are set forth in order to facilitate a thorough understanding of the present application, however, the present application can also be implemented in other different ways from those described herein, and therefore, the scope of protection of the present application is not limited by the specific embodiments disclosed below.

[0053] Some embodiments of the electronic contract signing method, the electronic contract signing system and the readable storage medium provided according to the present application will be described below with reference to the accompanying drawings. Figures 1 to 8 Embodiment One:

[0054] Embodiment One provides an electronic contract signing method for a service system, such as

[0055] As shown in the figure, the electronic contract signing method comprises: Figure 1

[0056] Step S102: obtaining service information, generating and displaying an identification code according to the service information, so as to return a digital signature and a to-be-signed document according to the service information by the second electronic device;

[0057] ​Step S104: synthesizing the digital signature and the to-be-signed document into a signed document, and storing the signed document and the scenario certificate.

[0058] The electronic contract signing method provided by the embodiments of the present application is used in a service system, and information is transmitted between the service system and the second electronic device. The second electronic device, i.e., the mobile device of the user, is introduced in the process of electronic contract signing, and the electronic contract is signed together, the signing process of the electronic contract in the related art is adjusted, the user is effectively involved, the whole signing process is safe and reliable, the economic loss of the user is avoided, and the user experience is improved.

[0059] In the process of electronic contract signing, the service system obtains business information, wherein the business information can be specific content of a to-be-signed contract document. An identification code is generated and displayed according to the business information, so as to return a digital signature and a to-be-signed document according to the business information by the second electronic device. The identification code can be a two-dimensional code or a bar code, the second electronic device can obtain the business information by scanning the identification code, and return the digital signature and the to-be-signed document according to the business information. The service system synthesizes the digital signature and the to-be-signed document returned by the second electronic device into a signed document, and stores the signed document and the scenario certificate for subsequent review. Generally, the first electronic device is a mobile device of an agent, for example, a tablet computer of the agent; and the second electronic device is a mobile device of a user, for example, a mobile phone of the user.

[0060] The electronic contract signing method provided by the embodiments of the present application can be used in the mobile signing scene of the insurance industry. In the insurance industry, insurance is a typical electronic contract signing scene. By introducing the mobile device of the user, the whole signing process is avoided to be concentrated on the mobile device of the agent (such as an insurance company). The signed document can be registered and recorded on a block chain, so as to avoid document tampering.

[0061] Embodiment two:

[0062] Based on the above-mentioned embodiment one, the electronic contract signing method provided by embodiment two is further limited, and the electronic contract signing method further includes: deleting the identification code based on that the signed document is stored. As shown in Figure 2 The electronic contract signing method includes:

[0063] Step S202: obtaining business information, generating and displaying an identification code according to the business information, so as to return a digital signature and a to-be-signed document according to the business information by the second electronic device;

[0064] Step S204: synthesizing the digital signature and the to-be-signed document into a signed document, and storing the signed document and the scenario certificate;

[0065] Step S206: deleting the identification code based on that the signed document is stored.

[0066] In this embodiment, after the first server stores the signed document, the identification code displayed on the first electronic device is deleted based on the signed document being stored, so as to avoid the abuse of the identification code, and if the identification code is still displayed on the first electronic device, the content of the contract document is easily leaked, causing economic losses of the two parties of the contract. Deleting the identification code can also effectively protect the privacy and security of the user.

[0067] In an embodiment, the service system includes a first electronic device and a first server. The first electronic device is configured to obtain service information, generate and display an identification code based on the service information, so as to return a digital signature and a to-be-signed document based on the service information by the second electronic device. The first server is configured to synthesize the digital signature and the to-be-signed document into a signed document, and store the signed document and the scene certificate.

[0068] Embodiment three

[0069] Based on any of the above embodiments, the electronic contract signing method further includes: sending a to-be-verified file to the second server, so as to verify whether the to-be-verified file is tampered with by the second server; and receiving a verification result returned by the second server, wherein the to-be-verified file includes a to-be-verified to-be-signed document.

[0070] In this embodiment, the electronic contract signing method further includes verifying whether the to-be-signed document is tampered with. Specifically, the service system sends a to-be-verified file to the second server, the second server verifies whether the to-be-verified file is tampered with, and returns the verification result to the service system. By verifying whether the to-be-signed document is tampered with, the tampered to-be-signed document can be identified in time, so as to improve the security of contract signing and avoid causing economic losses of the two parties of the contract.

[0071] Further, the electronic contract signing method further includes: sending a to-be-verified digital signature to the second server, so as to verify the validity of the to-be-verified digital signature by the second server; and receiving a verification result returned by the second server.

[0072] In this embodiment, the electronic contract signing method further includes verifying the validity of the digital signature. Specifically, the service system sends a to-be-verified file to the second server, the second server verifies whether the to-be-verified digital signature is valid, and returns the verification result to the service system. By verifying the validity of the digital signature, the invalid digital signature can be identified in time, so as to avoid using the invalid digital signature, thereby improving the security of signing and avoiding causing economic losses of the two parties of the contract.

[0073] Embodiment four

[0074] Embodiment four provides an electronic contract signing method for a second electronic device, such as Figure 3The electronic contract signing method includes:

[0075] Step S302: obtaining service information according to the identification code generated by the service system, and generating a to-be-signed document according to the service information;

[0076] Step S304: obtaining signature information;

[0077] Step S306: generating a to-be-signed document according to the to-be-signed document and the signature information;

[0078] Step S308: requesting the second server to generate a scene certificate and a digital signature according to scene information of the generated to-be-signed document;

[0079] Step S310: receiving the scene certificate and the digital signature sent by the second server, and sending the scene certificate, the digital signature and the to-be-signed document to the service system.

[0080] When the electronic contract signing method provided by the embodiment of the application is used by the second electronic device, information transmission is respectively performed between the second electronic device and the service system and between the second electronic device and the second server. The second electronic device and the second server are introduced in the process of electronic contract signing, and complete and reliable supervision and control are performed on the entire electronic contract signing process, so that the entire signing process is safe and reliable.

[0081] In the electronic contract signing process, the second electronic device scans the identification code displayed by the service system, obtains service information, and generates a to-be-signed document according to the service information. The service information can be specific content of a to-be-signed contract document, and the to-be-signed document can be a contract document in a PDF format. The second electronic device obtains signature information of a user, that is, handwritten signature information of the user, generates a to-be-signed document according to the to-be-signed document and the signature information, and requests the second server to generate a scene certificate and a digital signature according to scene information of the generated to-be-signed document. It can be understood by those skilled in the art that the to-be-signed document is a contract document that has not been digitally signed. After receiving the digital signature sent by the second server, the digital signature and the to-be-signed document are sent to the service system. Generally, the second server is a Beijing Digital Certificate Authentication Center (referred to as a CA center).

[0082] In the electronic contract signing method provided by the embodiment of the application, the to-be-signed document is generated after being handwritten signed by the user, and then is digitally signed according to the digital signature information sent by the second server. An unauthorized user cannot arbitrarily modify information saved in the document, and the to-be-signed document is ensured to be safe.

[0083] In an implementation, the scene information includes time, place, device information, identity information of a policyholder and an insured person, and generally includes the name and identity card number of the policyholder and the insured person.

[0084] Embodiment five:

[0085] On the basis of the above-mentioned embodiment four, embodiment five provides an electronic contract signing method, further limited before the step of obtaining the signature information, further comprising: obtaining the identity information indicated by the business information, verifying the identity information; based on the result of the identity information verification success, executing the step of obtaining the signature information. As shown in Figure 4 The electronic contract signing method comprises:

[0086] Step S402: obtaining the business information according to the identification code generated by the service system, and generating the business information into a to-be-signed document;

[0087] Step S404: obtaining the identity information indicated by the business information, and verifying the identity information;

[0088] Step S406: based on the result of the identity information verification success, executing the step of obtaining the signature information;

[0089] Step S408: obtaining the signature information;

[0090] Step S410: generating a to-be-signed document according to the to-be-signed document and the signature information;

[0091] Step S412: according to the scene information of the generated to-be-signed document, requesting the second server to generate the scene certificate and the digital signature;

[0092] Step S414: receiving the scene information and the digital signature sent by the second server, and sending the scene information, the digital signature and the to-be-signed document to the service system.

[0093] In this embodiment, the second electronic device needs to authenticate the identity information of the user before obtaining the signature information, in order to ensure that the signature information is valid and the subsequent application of the scene certificate. The identity information indicated by the business information is verified, so as to ensure that the user identity information is consistent with the identity information indicated by the business information. When the identity information verification is successful, the step S408 of obtaining the signature information is executed. If the identity information is not verified successfully, it indicates that the input identity information is inconsistent with the identity information indicated by the business information, and the identity information of the user needs to be checked, so as to improve the security of contract signing. Specifically, the type of identity information can be fingerprint or voice.

[0094] Embodiment six:

[0095] On the basis of the above-mentioned embodiment four, embodiment six provides an electronic contract signing method, which is further limited by the steps of requesting the second server to generate the scene certificate and the digital signature according to the scene information of the generated to-be-signed document, specifically comprising: obtaining the scene information of the generated to-be-signed document; calculating a first hash value according to the to-be-signed document, the signature information, the identity information and the scene information; sending the first hash value, the scene information and the identity information to the second server, so that the second server generates the scene certificate and the digital signature.

[0096] As shown in Figure 5 , the electronic contract signing method comprises:

[0097] Step S502: obtaining the business information according to the identification code generated by the service system, and generating the to-be-signed document according to the business information;

[0098] Step S504: obtaining the identity information indicated by the business information, and verifying the identity information;

[0099] Step S506: based on the result of the successful identity information verification, performing the step of obtaining the signature information;

[0100] Step S508: obtaining the signature information;

[0101] Step S510: generating the to-be-signed document according to the to-be-signed document and the signature information;

[0102] Step S512: obtaining the scene information of the generated to-be-signed document;

[0103] Step S514: calculating a first hash value according to the to-be-signed document, the signature information, the identity information and the scene information;

[0104] Step S516: sending the first hash value, the scene information and the identity information to the second server, so that the second server generates the scene certificate and the digital signature;

[0105] Step S518: receiving the scene certificate and the digital signature sent by the second server, and sending the scene certificate, the digital signature and the to-be-signed document to the first electronic device.

[0106] In this embodiment, scene information for generating the document to be signed is acquired, a first hash value is calculated according to the document to be signed, signature information, identity information and the scene information, and the first hash value, the scene information and the identity information are sent to the second server, so that the second server generates a scene certificate and a digital signature. The second server generates the scene certificate and the digital signature, and feeds back the scene certificate and the digital signature to the second electronic device. After receiving the scene certificate and the digital signature sent by the second server, the second electronic device sends the scene certificate, the digital signature and the document to be signed to the service system, so that the service system synthesizes a signed document, and stores the signed document and the scene certificate. The first hash value is calculated according to the document to be signed, the signature information, the identity information and the scene information, the plaintext cannot be inversely deduced, and conflict can be avoided. The first hash value is sent to the second server to generate the scene certificate, so that the validity of the digital signature and whether the document to be signed is tampered with can be verified in the later stage, thereby improving the security of the document to be signed and the digital signature.

[0107] Specifically, the scene certificate is a certificate issued for a business scene. After identity information verification is completed, a one-time CA certificate that is specific to the current business handling scene is issued to the user when the business is handled. The CA certificate represents a digital certificate issued by the CA center. In the electronic contract signing scene, the contract document is digitally signed according to the issued scene certificate. According to the Electronic Signature Law, a reliable electronic signature has the same legal effect as a handwritten signature or a seal.

[0108] In current common applications, the entire process of application, issuance and application of the scene certificate is transparent to the user, non-what-you-see-is-what-you-get, has no external supervision, has no user supervision, and may have a situation of abuse of the scene certificate, causing economic losses to the user and bringing adverse effects to the reputation of the agent. By introducing the second electronic device and the second server, the CA center serves as a trusted and neutral third party to provide scene certificate management services in a manner that the second electronic device directly interfaces with the CA center. The application process of the scene certificate, the calculation process of the hash value of the document to be signed and the calculation process of the hash value of the scene certificate are performed on the mobile device of the user, so as to ensure that the scene certificate cannot be abused or stolen. The issuance process of the scene certificate and the calculation process of the digital signature are performed in the CA center, so as to ensure the security and authority of the digital signature, realize complete and reliable supervision and control of the application, issuance and application process of the scene certificate, and make the electronic contract signing process safe and reliable.

[0109] Embodiment seven provides an electronic contract signing method for a second server, as shown in

[0110] Embodiment seven provides an electronic contract signing method for a second server, as shown in Figure 6 The electronic contract signing method includes:

[0111] Step S602: obtaining the first hash value, the scene information and the identity information sent by the second electronic device;

[0112] Step S604: generating a pair of keys according to the first hash value, the scene information and the identity information;

[0113] Step S606: generating a scene certificate according to the public key in the pair of keys and the scene information;

[0114] Step S608: generating a digital signature according to the private key in the pair of keys;

[0115] Step S610: sending the digital signature and the scene certificate to the second electronic device.

[0116] The electronic contract signing method provided by the embodiment of the present application is used for the second server, and information transmission is performed between the second server and the second electronic device. The second server is introduced in the process of electronic contract signing, and complete and reliable supervision and control are performed on the whole electronic contract signing process, so that the whole signing process is safe and reliable.

[0117] In the process of electronic contract signing, the second server obtains the first hash value, the scene information and the identity information sent by the second electronic device, generates a pair of keys, and generates a scene certificate according to the public key in the pair of keys and the scene information; a digital signature is generated according to the private key in the pair of keys, and the scene certificate and the digital signature are sent to the second electronic device, and the second electronic device sends the digital signature and the to-be-signed to the service system, so that the service system synthesizes the signed document and stores it. Generally, the second server is the Beijing Digital Certificate Authentication Center (referred to as CA center).

[0118] In an implementation mode, the pair of keys are two digital fields.

[0119] Embodiment eight:

[0120] On the basis of the above-mentioned embodiment seven, the embodiment eight provides an electronic contract signing method, and further limits that after the step of generating a digital signature according to the private key in the pair of keys, the method further includes: deleting the private key based on the result that the generation of the digital signature is successful.

[0121] In this embodiment, after the second generation of the digital signature is successful, in order to ensure the security and authority of the digital signature, the private key in the digital signature is deleted, and then the scene certificate and the digital signature are sent to the second electronic device, and the subsequent user and the agent can verify the signed document through the public key.

[0122] Further, the electronic contract signing method further includes: obtaining the to-be-verified file sent by the service system; calculating a second hash value according to the to-be-verified file, the signature information corresponding to the to-be-verified file, the scene information corresponding to the to-be-verified file, and the identity information corresponding to the to-be-verified file; and determining whether the to-be-verified file is tampered with based on the relationship between the second hash value and the first hash value, wherein the to-be-verified file includes the to-be-signed document to be verified.

[0123] In this embodiment, the electronic contract signing method further includes verifying whether the to-be-signed document is tampered with. Specifically, the to-be-verified file sent by the service system is obtained, and a second hash value is calculated according to the to-be-verified file, the signature information corresponding to the to-be-verified file, the scene information corresponding to the to-be-verified file, and the identity information corresponding to the to-be-verified file. If the second hash value is the same as the second hash value, it means that the to-be-verified file is the same as the original to-be-signed document, otherwise it is different. By verifying whether the to-be-signed document is tampered with, the tampered to-be-signed document can be identified in time, thereby improving the security of contract signing and avoiding economic losses of both parties.

[0124] Further, in this embodiment, the electronic contract signing method further includes: obtaining the to-be-verified digital signature sent by the service system; and performing operation on the scene certificate corresponding to the to-be-verified digital signature, the to-be-verified digital signature, and the first hash value corresponding to the to-be-verified digital signature according to a preset rule; and determining the validity of the to-be-verified digital signature based on the operation result.

[0125] In this embodiment, the electronic contract signing method further includes verifying the validity of the digital signature. Specifically, the to-be-verified digital signature sent by the service system is obtained, and the scene certificate corresponding to the to-be-verified digital signature, the to-be-verified digital signature, and the first hash value corresponding to the to-be-verified digital signature are operated according to a preset rule. If the operation result is self-consistent, it means that the digital signature is valid, otherwise it is an invalid signature. By verifying the validity of the digital signature, invalid digital signatures can be identified in time, thereby avoiding the use of invalid digital signatures, improving the security of signing, and avoiding economic losses of both parties.

[0126] Embodiment Nine:

[0127] As Figure 7As shown in the embodiment nine, the electronic contract signing system 700 comprises: a first electronic device 702, the first electronic device 702 comprises: a first memory and a first processor, the first memory stores a program or instructions, and the first processor executes the program or instructions to implement the steps of the electronic contract signing method of the embodiment one or the embodiment two, thereby having all the beneficial technical effects of the electronic contract signing method of the embodiment one or the embodiment two, which will not be repeated here; a second electronic device 704, the second electronic device 704 comprises: a second memory and a second processor, the second memory stores a program or instructions, and the second processor executes the program or instructions to implement the steps of the electronic contract signing method of any one of the embodiment three to the embodiment six, thereby having all the beneficial technical effects of the electronic contract signing method of any one of the embodiment three to the embodiment six, which will not be repeated here; and a second server 706, the second server 706 comprises: a third memory and a third processor, the third memory stores a program or instructions, and the third processor executes the program or instructions to implement the steps of the electronic contract signing method of the embodiment seven or the embodiment eight, thereby having all the beneficial technical effects of the electronic contract signing method of the embodiment seven or the embodiment eight, which will not be repeated here.

[0128] Embodiment ten:

[0129] The embodiment ten provides a readable storage medium, which stores a program or instructions, the program or instructions are executed by a processor to implement the steps of the electronic contract signing method of the embodiment one or the embodiment two, thereby having all the beneficial technical effects of the electronic contract signing method of the embodiment one or the embodiment two, which will not be repeated here; or the program or instructions are executed by a processor to implement the steps of the electronic contract signing method of any one of the embodiment three to the embodiment six, thereby having all the beneficial technical effects of the electronic contract signing method of any one of the embodiment three to the embodiment six, which will not be repeated here; or the program or instructions are executed by a processor to implement the steps of the electronic contract signing method of any one of the embodiment seven or the embodiment eight, thereby having all the beneficial technical effects of the electronic contract signing method of the embodiment seven or the embodiment eight, which will not be repeated here.

[0130] Embodiment eleven:

[0131] As shown in the embodiment eleven, the electronic contract signing method comprises: Figure 8

[0132] Step S802: The service system is configured to acquire service information, generate and display an identification code according to the service information, so as to return a digital signature, a to-be-signed document and a scene certificate according to the service information by the second electronic device;

[0133] ​Step S804: obtaining the service information according to the identification code generated by the service system, and generating a to-be-signed document according to the service information;

[0134] Step S806: obtaining the signature information;

[0135] Step S808: generating a to-be-signed document according to the to-be-signed document and the signature information;

[0136] Step S810: obtaining the scene information of generating the to-be-signed document;

[0137] Step S812: calculating a first hash value according to the to-be-signed document, the signature information, the identity information and the scene information;

[0138] Step S814: sending the first hash value, the scene information and the identity information to the second server, so that the second server generates the scene certificate and the digital signature;

[0139] Step S816: requesting the second server to generate the scene certificate and the digital signature according to the scene information of generating the to-be-signed document;

[0140] Step S818: obtaining the first hash value, the scene information and the identity information sent by the second electronic device;

[0141] Step S820: generating a pair of keys according to the first hash value, the scene information and the identity information;

[0142] Step S822: generating the scene certificate according to the public key in the pair of keys and the scene information;

[0143] Step S824: generating the digital signature according to the private key in the pair of keys;

[0144] Step S826: sending the digital signature and the scene certificate to the second electronic device.

[0145] Step S828: receiving the scene certificate and the digital signature sent by the second server, and sending the scene certificate, the digital signature and the to-be-signed document to the service system;

[0146] Step S830: synthesizing the digital signature and the to-be-signed document into a signed document, and storing the signed document and the scene certificate.

[0147] In the process of signing the electronic contract, the user and the agent complete the preliminary business processing on the mobile device of the agent, and the mobile device of the agent displays an identification code, ready for the user's handwritten signature link; the user uses the mobile device to scan the code, jump to the WeChat applet, and perform user identity verification; after the identity verification, the mobile device of the user displays the contract document, and after ensuring that the user has read it completely, the user performs handwritten signature to form a to-be-signed document; the applet applies for and obtains a scene certificate from the CA center, and then submits the hash value of the to-be-signed document, the hash value of the scene certificate and the identity information to the service interface provided by the CA center; the service interface of the CA center calculates the digital signature, and destroys the private key before returning to the user's WeChat applet to ensure security; the WeChat applet provides the digital signature returned by the CA center and the to-be-signed document to the mobile device of the agent, and completes the digital signature synthesis and archival storage of the document.

[0148] The electronic contract signing method provided by the embodiment of the application combines the mobile device of the agent and the mobile device of the user to jointly complete the mobile signing business, uses the code scanning jump mode to complete the mobile signing business, and the user experience process is natural and smooth.

[0149] In the description of the specification, the terms "connection", "installation", "fixation" and the like should be understood in a broad sense, for example, "connection" can be fixed connection, detachable connection or integral connection; can be directly connected or indirectly connected through an intermediate medium. For those skilled in the art, the specific meaning of the above terms in the application can be understood according to the specific circumstances.

[0150] In the description of the specification, the terms "one embodiment", "some embodiments", "a specific embodiment" and the like mean that the specific features, structures, materials or characteristics described in connection with the embodiment or example are included in at least one embodiment or example of the application. In the specification, the illustrative description of the above terms does not necessarily refer to the same embodiment or example. Moreover, the specific features, structures, materials or characteristics described can be combined in any one or more embodiments or examples in a suitable manner.

[0151] The above is only the preferred embodiment of the application, and is not used to limit the application. For those skilled in the art, the application can have various modifications and changes. Any modification, equivalent replacement, improvement, etc. made within the spirit and principles of the application shall be included in the protection scope of the application.

Claims

1. An electronic contract signing method for a service system, characterized by, The electronic contract signing method comprises: Obtaining business information, generating and displaying an identification code according to the business information, so that a second electronic device returns a digital signature, a document to be signed, and a scene certificate according to the business information; Synthesizing the digital signature and the document to be signed into a signed document, storing the signed document and the scene certificate; Based on the signed document being stored, deleting the identification code; After the document to be signed is signed by a user, a signed document is generated, and a digital signature is performed according to the digital signature information sent by the second server; The electronic contract signing method further comprises: Sending a file to be verified to a second server, so that the second server verifies whether the file to be verified is tampered with; Receiving a verification result returned by the second server, Wherein, the file to be verified includes a document to be signed; The electronic contract signing method further comprises: Sending a digital signature to be verified to a second server, so that the second server verifies the validity of the digital signature to be verified; Receiving a verification result returned by the second server; The service system comprises a first electronic device and a first server, and after the first server stores the signed document, based on the signed document being stored, the identification code displayed on the first electronic device is deleted, and the identification code is a two-dimensional code or a bar code; Wherein, the first electronic device is a mobile device of an agent, and the second electronic device is a mobile device of a user, and the mobile signing business is completed by using the scan code jump mode in combination with the mobile device of the agent and the mobile device of the user; Wherein, the application process of the scene certificate is performed on the mobile device of the user.

2. An electronic contract signing method for a second electronic device, characterized in that, The electronic contract signing method comprises: According to the identification code generated by the service system, business information is obtained, and the business information is generated into a document to be signed; Obtaining signature information; Generating a document to be signed according to the document to be signed and the signature information; According to the scene information of generating the document to be signed, requesting a second server to generate a scene certificate and a digital signature; Receiving the scene certificate and the digital signature sent by the second server, and sending the scene certificate, the digital signature and the document to be signed to the service system; Before the step of obtaining the signature information, further comprising: Obtaining identity information indicated by the business information, and verifying the identity information; Based on the result of successful verification of the identity information, the step of obtaining the signature information is executed; According to the scene information of generating the document to be signed, requesting a second server to generate a scene certificate and a digital signature, specifically comprising: Obtaining the scene information of generating the document to be signed; Calculating a first hash value according to the document to be signed, the signature information, the identity information and the scene information; Sending the first hash value, the scene information and the identity information to the second server, so that the second server generates a scene certificate and a digital signature.

3. An electronic contract signing system, characterized by comprising: Comprise: A first electronic device, comprising: a first memory storing a program or instructions, and a first processor executing the program or instructions to implement the steps of the electronic contract signing method of claim 1. A second electronic device, comprising: a second memory storing a program or instructions, and a second processor executing the program or instructions to implement the steps of the electronic contract signing method of claim 2.

4. A readable storage medium, on which a program or instructions are stored, characterized in that, The program or instructions are executed by a processor to implement the steps of the electronic contract signing method of claim 1, or the program or instructions are executed by a processor to implement the steps of the electronic contract signing method of claim 2.

Citation Information

Patent Citations

  • Signature system and method, first server and storage medium

    CN111726226A