The contract journey, step by step

How Wthaiq works: from the document
into a signed, authenticated contract.

This page explains what actually happens at each step — not general promises. You will find the creator's path, preparing the contract and sending it, and the signer's path, receiving the link and signing, then what is computed and stored technically behind the scenes: the verification code, the audit trail and the fingerprint of SHA-256 that fixes the final file in place.

What you receive at the end
1Final PDF copy Sealed after the last signature
2Completion certificate with each signer's details and method of verification
3A time-stamped event log For every step in the contract
4SHA-256 fingerprint for the file — any change breaks it
5A document number and a QR code to a public verification page
SHA-256 (illustrative example): 9f2a1c7e…b4d8e6ff

Six stages — each one hands over to the next

The journey is the same whichever way you start: a ready-made template, a contract you write yourself, or a PDF file you upload.

CreateA template, your own contract, or a PDF
Fill inData and fields for each party
Set the partiesand the signature level for each party
SendA signing link for each party
Sign and verifyA code, an identity check or a token
Authenticate and trackA certificate, a fingerprint and public verification
First path

The creator's journey: Six numbered steps.

You are the party who prepares the contract, sends it and tracks it. Here is what you do, in order, and what you get at the end of each step.

Step one · Creation

Choose your starting point

You never start from a blank page unless you want to. Choose a template from the ready-made contract library of more than 250 templates drafted and reviewed by lawyers, write your own contract in the professional editor with AI assistance, or upload a PDF file you already have. All three routes complete the same authenticated journey; the only difference is preparation time — not the strength of the contract that comes out of it.

A ready-made templatePurpose-built editorPDF upload
The result: A contract draft inside your account with its own document number.
Step two · Filling in

Fill in the data and set the fields

The wizard asks you simple questions — party names, value, term, effective date — and places every value in the right spot inside the contract text instead of leaving you to hunt for blanks by hand. Fields that are not yours to fill (the second party’s signature, ID number, date of acknowledgement) are assigned to them to complete at signing. If your input is a PDF, you drag the fields onto the page and position them precisely.

A step-by-step wizardFields assigned to each partyMandatory fields
The result: A contract with every detail filled in, and a clear field map for each party.
Step three · Parties

Add the parties and choose the signature level

Add each signer by email, then choose the verification level that suits their role: an electronic signature with an OTP code for everyday contracts, identity-verified signing for sensitive transactions and for parties you are dealing with for the first time, or token-based signing with its accredited certificate when the receiving authority requires the highest level. The level is set for each signer separately — a manager can sign with a token while a supplier signs with an OTP code on the very same contract.

One signer or moreA level for each partyReview before sending
The result: A list of signers, each with the verification method required of them.
Step four · Sending

Send the signing link

As soon as you send, each party receives their own signing link by email. The link requires no account and no app from the recipient, and works on phone or computer. From the moment you send, events start being recorded: who it went to, when, and its current status — all visible to you in the dashboard.

A link for each partyNo account for the recipientWorks on mobile
The result: A contract in “awaiting signature” status, and an event log that has started running.
Step five · Follow-up

Track each party’s status

The dashboard shows the status of every contract — draft, awaiting signature, signed — and who has signed and who has not yet. Tracking here is not an administrative luxury: it is what tells you the delay is because a party has not opened the link, not because something is wrong with the contract. And if the contract has a fixed term, renewal alerts reach you before it expires, so no supplier or tenancy contract runs out without anyone noticing.

Live statusEffective dateRenewal alerts
The result: A clear picture of where every contract stands, with no chasing by email.
Step six · authentication

Receive the authenticated copy

After the last signature the contract is sealed: a final PDF, a completion certificate carrying the signers' details, how each of them was verified and the signing times, a time-stamped event log, and a fingerprint SHA-256 of the final file, with a QR code and a document number that lead to The public verification page. From that moment, any change to the file alters its fingerprint and is exposed — which is what makes denying the contract difficult. What the certificate contains is set out on the E-signature certificate.

Completion certificateSHA-256 fingerprintQR for verification
The result: A signed, authenticated contract that anyone can verify at any time.
The second path

The signer's experience — the second party

Whoever receives the contract does not see what you see. Their experience is shorter and simpler: a link, a review, a verification, a signature. Understanding it saves you half the questions you would otherwise be asked.

1 Receives

A link to their email

They receive an email in your name containing a signing link that is theirs alone. No account, no password, no app to install.

2 reviews

It reads the whole contract

They open the document on a phone or a computer and read it in full before doing anything, with the fields required of them clearly marked.

3 verifies

Proves they are who they say they are

According to the level you chose: entering a one-time code (OTP) sent to them, identity verification with an official document and a live face check, or signing with a token and its certificate.

4 Signs

They place their signature

They draw their signature in the space provided and fill in only the fields assigned to them — they cannot change the contract text.

5 is reassured

receives their copy

They receive the authenticated copy, and can later confirm its validity themselves through the public verification page using the document number or the QR code.

A practical tip: What confuses the second party most is not the technology, but an email they were not expecting. Send them a short message telling them you have sent the contract for electronic signature and that the link will arrive from Wthaiq — and if they want reassurance from a neutral source, ask them to open Verification page after signing, to see the document authenticated for themselves. For more on use cases in shipping, HR and law firms, see How we help.

Choose your starting point

Four paths — and one authenticated ending.

The paths differ in where they start and how many parties are involved, but they meet at the same seal: a completion certificate, a fingerprint and an audit trail.

A ready-made contract from the library

You pick a template drafted by lawyers, the wizard asks you for your details, and out comes the contract written and ready to send.

When do you use it? A recurring, familiar contract: employment, lease, services, supply, confidentiality.

A custom contract you write

Write in the professional editor from scratch or import a Word file, and let the AI help you strengthen the drafting and order the clauses.

When do you use it? A non-standard agreement, or terms you negotiated that no template covers.

Upload a PDF for signature

Is your document final in its approved form? Upload it as it is, drag the signature and data fields onto it and assign each field to its owner.

When do you use it? A document your lawyer prepared, or one that reached you from the other party, whose text may not be changed.

Multi-party signing

A contract with more than one signer? Each party receives their own link and signs from their own device, and the dashboard shows who has signed and who has not yet. The final seal and the completion certificate are issued only after the last signature.

When do you use it? Several partners, or a contract needing the employee, their manager and HR to sign.

The rule for choosing: Start from a ready-made template if the contract is standard — faster and less prone to slips. Move to the custom editor if you have negotiated specific clauses. And upload a PDF if the wording is locked and must not be touched. In all three cases, the signature level is set independently of the route. See FAQ If you are on the fence.

You choose

Three signature levels — according to how important the contract is.

The higher the value of the contract or the more sensitive the party, the higher the level you choose. The level is set for each signer separately.

Electronic signature

The signer draws their signature and confirms it with a verification code (OTP) sent to them, and the successful verification is recorded with its time in the audit trail.

Suitable for: Everyday contracts and quick agreements with parties you know.
Verification level: basic

Signing with ID verification

Before signing, the signer is verified with an official document and a live face check, so their identity is confirmed — not merely an email address they happen to own.

Suitable for: Sensitive transactions, and parties you are dealing with for the first time.
Verification level: advanced

The accredited signing token

A digital signature with an accredited certificate held on the token, embedded inside the file under the PAdES so it becomes part of the document itself.

Suitable for: Official documents and bodies that require an accredited signature.
Verification level: highest
Behind the scenes

What happens technically at every step?

What you see on screen is half the story. This table sets out what is computed or verified at each step, and what is recorded and stored against it — because the strength of an electronic contract comes from that record, not from a picture of a signature.

Note: transmission between your browser and the platform runs over TLS 1.3, and data is encrypted in transit and at rest. Fuller details on the page Trust and security.
StepWhat is computed or verifiedWhat is recorded and stored
Create the document Generating a unique document number that distinguishes the contract from any other. The document copy is encrypted, along with the moment of creation and the account that created it.
Setting the fields and the parties Tying every field to its owner, and checking that mandatory fields are complete. The field map and positions, the list of signers, and the signature level required from each party.
Sending for signature Generating a signing link unique to each party that works for no one else. An “sent” event in the audit trail: recipient, timestamp and the contract’s new status.
Opening the link and reviewing the contract The link’s validity and its binding to the right document and the right party. The opening event with its timestamp and IP address — which is what later proves the contract was genuinely shown before it was signed.
Verifying the signer's identity Send code OTP and matching it on entry, or checking the official document and the live face match, or verifying the accredited certificate on the token. The verification method used, its result and its time — tied to that specific signer.
Signature position Fixing the signature in its designated place and preventing any change to the contract's text. At token level, a digital signature is embedded under the PAdES inside the file. A signing event for each party with its time, and the field values that party entered.
Sealed after the last signature Fingerprint computed SHA-256 for the final file — a fixed string that changes completely if a single byte of the file changes. The fingerprint, the completion certificate, the full event log, the QR code and the document number.
Public verification later on Matching the document number or the QR code against the record stored on the platform. The status and validity of the document are shown on Verification page without revealing the contract’s contents and with no account required.

Why does the SHA-256 fingerprint matter?

The fingerprint is a string computed from the content of the file itself. If someone adds a single zero to the contract value, moves a line, or swaps a page — the fingerprint changes completely and no longer matches the stored one. That turns “is this the copy I signed?” from an argument into a technical comparison.

What is inside the signing certificate

Why does the audit trail matter?

A signature on its own is just an image; what gives it weight is everything around it: when the contract was sent, when it was opened, from which address, how the signer was verified, and when they signed. That sequential timeline is what any authority examining the contract will look at. The legal framework is set out in detail on the Compliance.

How we protect your data
Real time

How long does the journey take?

Honesty beats promises: the part you control is measured in minutes, and the part you don’t is how fast the other parties respond. The authentication, though, waits for no one.

Preparing the contract on your side

Minutes: choose the template or upload the file, fill in the data, add the parties, send. A ready-made template is the fastest way in; a custom contract takes as long as drafting and reviewing it.

Waiting on the parties

This is the biggest variable and it does not depend on the platform: when the other party opens their inbox, and when they find time to review the contract. The link reaches them instantly, and the signing itself takes them no more than a few minutes.

Authentication and sealing

Instant, right after the last signature: the fingerprint is computed, the completion certificate is issued, and the contract becomes publicly verifiable straight away — no waiting and no manual review.

The usual paper cycle

  • Printing two copies and putting the annexes in order.
  • Sending a courier or a shipping company, then waiting for delivery.
  • signing, then sending the other copy back the other way.
  • Filed in a cabinet, then searched for by hand when needed.
  • No reliable record of who received it, when, or who opened the document.

The cycle at Wthaiq

  • Prepare and send from where you are, with no printing.
  • A signing link reaches every party instantly.
  • Signing from mobile or desktop at any time.
  • Automatic archiving and search from the dashboard.
  • A full time-stamped audit trail for every event in the contract.
Fast to get going

What you need Before you begin?

Gathering these items before you sit down at the screen turns preparation into a matter of minutes, and prevents the most common cause of stalled contracts: a contract sent, then found to contain a mistake.

The correct legal namesThe company name as it appears in its commercial register, or the individual's name as it appears on their ID — not the name everyone uses in conversation.
Each signer's emailA working email the person opens themselves, not a general department inbox that may be ignored. And their phone number if you are going to require code verification.
The contract's essential detailsValue, payment method, term, effective date, and each party’s core obligations.
The file, if it is readyA final PDF or Word version if you are going to import it, along with the annexes that must be attached to the contract.
Choosing the signature levelDecide in advance what suits each party: a verification code, identity verification, or an accredited token? The decision depends on the value of the contract and on the receiving body.
The token to hand if you chose itIf the level required is a token signature, make sure the token and its certificate are within the signer's reach at signing time.

You do not need: Legal expertise — the templates are drafted by lawyers and the wizard leads you step by step; no technical expertise — no software to install and no servers to set up; and no account for the other party — they sign straight from the link. And if you would like to read up on the legal concepts before your first contract, start with Resources or Blog.

Legitimate objections

The questions people ask before your first contract.

These are not marketing questions — they are the objections that actually get raised in meetings, with straight answers.

Are electronic signatures legally recognised in Egypt?

Yes — electronic signatures are regulated in Egypt by Electronic Signature Law No. 15 of 2004 and its executive regulations. What matters, though, is understanding that recognition is not absolute for any image of a signature: its strength depends on proving the signer’s identity, the integrity of the document, and the link between the signature and that document. That is why the journey is built on clear verification levels, an audit trail and a file fingerprint — not on a drawn signature.

The legal framework and its requirements are set out in detail on the Compliance and the legal framework.

The other party does not trust electronic signatures — how do I convince them?

Do not argue it in theory; give them something to check for themselves. Send them the authenticated copy with the completion certificate, and ask them to open The public verification page and enters the document number or scans the QR code. They will see the document's status and validity without creating an account and without the contract's content being revealed. Something that can be verified in one click convinces more than any explanation.

What if a party denies that they were the one who signed?

This is where what gets recorded behind the scenes proves its worth. Every contract has a time-stamped event log showing when the link was sent and to whom, when the document was opened and from which IP address, by what method the signer was verified (a verification code, an identity check with an official document and a face scan, or an accredited certificate on a token), and when the signature was placed. The higher the verification level you choose, the weaker any denial becomes.

Can the contract be altered after signing without it being detected?

No. After the last signature, a fingerprint is computed for SHA-256 of the final file, and stored. Any change to the file — a number, a word, a page — produces a completely different fingerprint that does not match the stored one, so tampering is exposed immediately. And at token signature level, the digital signature is embedded in the file itself under the PAdES.

Does the other party need an account or an app to sign?

No. They receive their own signing link by email, open it on a phone or computer, review the contract, verify using the method you chose, then sign. No account, no password, no app. That alone removes half the resistance to adoption among suppliers and clients.

And what about my data and the content of my contracts?

Transfer takes place over TLS 1.3, data is encrypted in transit and at rest, and the public verification page shows the status and validity of a document without revealing its content. The processing of personal data in Egypt is governed by the provisions of Personal Data Protection Law No. 151 of 2020. Details on the Trust and security.

I have no legal background — is a ready template enough?

The templates in the library were drafted and reviewed by lawyers, and they cover the standard, recurring cases: employment, tenancy, services, supply, confidentiality. But if you have negotiated clauses or an unusual arrangement, the better route is to write in the custom editor and get legal review of the sensitive clauses. The platform handles the signing and the authentication; whether the clauses suit your deal remains a decision for you and your adviser.

My contract needs more than two signers — is that supported?

Yes. You add all the signers, each receives their own link and signs from their device in their own time, and the dashboard shows who has signed and who has not. The contract is not sealed and the completion certificate is not issued until every signature is in — so there is no half-authenticated copy.

What if I already have the document and do not want its wording changed?

Upload it as a PDF exactly as it is. It will not be retyped and its text will not be touched; all you do is drag signature and data fields onto the page and assign each field to its owner. The document stays exactly as your lawyer drafted it, and gains the full authentication layer in return: identity verification, the event log, the fingerprint and the verification page.

Can I go back to the contract years later?

Your contracts are stored and archived on the dashboard with their status and effective date, and you can download the authenticated copy at any time. For fixed-term contracts, renewal alerts reach you before the term ends. And to check that any copy is genuine later, all it takes is Verification page by document number or QR code.

Start the journey on a real contract.

The quickest way to understand the journey is to walk it once: pick a template or upload your file, add a party, and watch the audit trail build in front of you.