Use this robust n8n workflow to create a secure PDF Digital Signature API. It supports PAdES baseline levels (B, T, LT, LTA), visible/invisible signatures, and manages dependencies automatically.
Download this n8n workflow template and start using it instantly.
Digitally signing documents according to established standards like PAdES is often complex, requiring specialized libraries, secure certificate handling, and environment management. This highly technical n8n workflow solves this by providing a complete, self-contained API endpoint for secure PDF signing. This n8n template handles the secure upload of the PDF and PFX certificate, automatically installs required dependencies (like Java JRE), extracts certificate components, executes the signing process using the open-pdf-sign.jar utility, and manages temporary file cleanup. It supports both visible and invisible signatures and allows selection of all PAdES baseline levels (B, T, LT, LTA), ensuring your output is compliant. Implementing this robust n8n node sequence simplifies a critical compliance task.
The entire process starts with a specialized n8n trigger.
/pdf-sign webhook, receiving the input PDF, PFX certificate file, certificate password, and desired signing parameters (level and visibility)./tmp/) using Read/Write File n8n node operations. This ensures secure, isolated processing.Check Java n8n node. If missing, it downloads and executes a script to install necessary dependencies.pfx-split.sh) is run via an Execute Command n8n node to securely split the PFX file into separate PEM certificate and private key files.If n8n node determines if the signature should be visible (adding visual parameters) or invisible (no visual mark).Switch n8n node routes the flow based on the requested PAdES level (B, T, LT, LTA), setting the corresponding signing parameter.Sign PDF Execute Command n8n node executes the main signing script (processpdf.sh), passing all input and temporary file paths, along with the visibility and PAdES level parameters.Respond To Webhook n8n node with the correct PDF MIME type.Execute Command n8n node to delete all temporary input, output, and certificate files for security./pdf-sign.Execute Command n8n node. If you are using a Dockerized n8n installation, ensure the container has permissions to run shell commands and write to temporary directories./en/signpage) or the CURL examples referenced in the sticky notes to test the /pdf-sign endpoint. Credentials are not required for internal nodes but proper PFX certificate and password must be provided in the input payload.This complex n8n workflow relies on powerful file and command line manipulation:
Webhook (n8n trigger): The primary entry point (/pdf-sign) accepting multipart form data including the PDF file, PFX certificate, and required parameters like pfxPassword and signLevel.
Execute Command (n8n node): Used extensively for dependency management (Check Java, Install Dependencies), certificate extraction (Run Cert Script), and the core signing process (Sign PDF). It interfaces directly with shell scripts and the Java signing library.
Read/Write File (n8n node): Crucial for securely handling uploaded binaries. It writes input files (Write Files : PDF, Write PFX) and reads the final result (Read Signed PDF) from the server's temporary file system.
If (Java Missing?): Checks the exit code of the which keytool command. If Java is not found, the n8n workflow branches to download and install required dependencies.
If (Without Visible?): Checks the input parameter isVisible. Determines whether to include parameters for creating a visible signature mark on the PDF document.
Switch (Switch Sign Visible): Routes the execution path based on the user-defined signLevel (B, T, LT, LTA), ensuring the correct PAdES standard parameter is used for the digital signing process.
Build a powerful n8n workflow for fully automated short video creation. This n8n template integrates OpenAI, Leonardo AI, RunwayML, HeyGen, and json2video using specialized n8n node components.

Automate high-value order alerts for Shopify using this powerful n8n workflow. Filter transactions, summarize customer history via AI, and send instant Slack notifications to your team.

Deploy a powerful, multi-module e-commerce automation suite using n8n and OpenAI Agents. Covers support, cart recovery, inventory, and marketing operations.

Automate publishing multi-image posts to Bluesky using this custom n8n workflow. Master authentication, binary data handling, and native API integration for complex social media automation.

Automate AI output evaluation for legal document extraction. This powerful n8n workflow fetches test cases, extracts data from PDFs, uses GPT-4 via OpenRouter for judgment, and logs results in Google Sheets.


I'm a DevOps engineer and automation enthusiast who builds smart, practical workflows using n8n.io. I focus on creating reliable, open-source solutions that connect tools and simplify everyday operations — whether it’s infrastructure management, workflow automation, or integrating AI into existing systems.







































