전자 거래법(2021년 수정)
싱가포르의 전자 서명 프레임워크
싱가포르의 전자 거래법(ETA)은 1998년에 최초로 제정되어 2010년과 2021년에 수정된 것으로, 아시아에서 가장 잘 정립된 전자 서명 법 중 하나입니다. 이 법은 간단한 전자 서명(SES), 고급 전자 서명(AES), 및 인정 전자 서명(QES)의 세 단계 전자 서명을 명확히 인정하고, UNCITRAL 전자 서명 모델 법과 밀접하게 일치합니다.
세 단계 서명 프레임워크
국가 디지털 신원(4M+ 사용자)
규제 기관: IMDA
ETA 아래 세 단계 서명
싱가포르의 세 단계 프레임워크는 조직이 서명 강도를 거래 위험에 맞게 조정할 수 있도록 합니다. 높은 단계는 더 강한 법적 추정을 제공합니다.
| 법적 지위 | 일반적인 사용 사례 | |
|---|---|---|
| SES(간단) | 대부분의 거래에 적용; 낮은 증거 중요도 | 내부 승인, 낮은 위험 상업 계약 |
| AES(고급) | 서명자와 연결; 조작 감지 가능; 더 강한 증거 | 표준 상업 계약서, 공급자 계약서 |
| QES(인정) | 손쓰기 서명과 동일; 가장 강한 법적 추정 | 고가 계약서, 규제 등록, 국경을 초월한 계약 |
Singpass: 싱가포르의 신원 뼈대
Singpass는 싱가포르 정부 기술(GovTech Singapore)이 관리하는 국가 디지털 신원 플랫폼으로, 400만 명 이상의 등록 사용자를 보유하고 있으며, e-signature 플랫폼과 통합할 수 있는 신뢰할 수 있는 신원 확인을 제공합니다.
Singpass는 국가 등록 신원 카드(NRIC) 데이터에 기반하여 사용자를 인증합니다. 자기 주장 신원 또는 이메일 확인보다 높은 신뢰 수준을 제공합니다.
상업 플랫폼은 로그인, 신원 확인, 디지털 서비스 접근을 위해 Singpass를 통합할 수 있습니다. API는 OAuth 기반 인증을 지원하는 웹 및 모바일 애플리케이션을 지원합니다.
Corppass는 Singpass와 유사한 기업용 신원 인증 도구로, 등록된 법인 엔티티를 대신할 권한을 가진 사람의 권한을 확인합니다. 이는 법인 권한이 중요한 B2B 계약에서 필수적입니다.
MyInfo( Singpass를 통해 접근 가능)는 양식을 미리 채우고 KYC를 원활하게 하는 미리 확인된 개인 데이터를 제공합니다. 금융 기관은 계정 개설 및 고객 가입에 이를 사용합니다.
싱가포르는 APAC 서명의 허브
지역 본사 혜택
많은 다국적 기업은 싱가포르에 APAC 본사를 두고 있습니다. 싱가포르에서 서명된 계약은 일반적으로 지역 전역에서 잘 인정받지만, 중국, 베트남, 인도네시아의 상대방은 여전히 현지 규제 서명을 요구할 수 있습니다.
PDPA와 데이터 보호
싱가포르 개인 데이터 보호법(PDPA)은 서명 작업에서 개인 데이터를 규제합니다. PDPA는 원칙 기반으로 GDPR보다 보다 구체적이지 않지만, 동의, 목적 제한, 합리적인 보안 조치가 필요합니다.
금융 서비스에 대한 MAS 지침
싱가포르 금융 당국(MAS)은 금융 기관의 전자 거래에 대한 지침을 발행했습니다. 은행, 보험사, 자본 시장 중간자는 고객 인증 및 기록 보존에 대한 추가 요구 사항을 충족해야 합니다.
다른 법률 구역과의 상호 인정
싱가포르는 APEC 및 ASEAN 프레임워크 아래의 상호 인정 계약에 참여하고 있습니다. 이러한 계약은 무역을 촉진하지만, 싱가포르의 QES가 다른 법률 구역에서 자동으로 유효하지 않습니다 — 수령 국가의 법이 적용됩니다.
서명 팀에 중요한 ETA 섹션
ETA는 기능적 동일성을 기반으로 구성되어 있으며, 특정 조건이 충족되면 전자 기록과 서명은 종이 대체물과 동일한 법적 중량을 가집니다.
Section 6: Functional equivalence
ETA의 제 6 조는 정보가 전자 형식으로 되어 있음을 이유로 법적 효력, 유효성 또는 집행 가능성을 부인할 수 없다고 명시합니다. 이는 싱가포르에서 전자 서명이 유효하게 되는 기본적인 조항입니다.
Section 17: Electronic signatures
Section 17 provides that a signature requirement is met if a method is used to identify the person and indicate their intention with respect to the information. This supports SES — any reliable electronic method suffices for most transactions.
Third Schedule: Qualified electronic signatures
The Third Schedule of the ETA defines QES requirements: the signature must be uniquely linked to the signatory, capable of identifying the signatory, created using means under the signatory's sole control, and linked to the data in a way that any subsequent change is detectable.
Regulation 6: Certification authorities
The Electronic Transactions Regulations prescribe the standards for certification authorities. IMDA-licensed CAs must meet requirements for identity verification, cryptographic standards, certificate management, and audit obligations.
Sector-specific requirements in Singapore
Different industries face additional signature requirements beyond the general ETA framework.
Financial services (MAS Notice 626)
MAS Notice 626 on AML/CFT requires financial institutions to verify customer identity through reliable means. Singpass/MyInfo integration satisfies this requirement for individual customers. For corporate customers, Corppass verification of authorised signatories is expected.
Employment contracts (MOM)
The Ministry of Manpower accepts electronic employment contracts. However, employment pass applications and certain statutory filings require specific formats. HR teams should use AES or QES for enforceability in employment disputes.
Real property (Land Titles Act)
Property transactions require conveyancing through a qualified lawyer. While preliminary agreements can be signed electronically, the final instrument of transfer must meet specific statutory formalities. Electronic signatures are increasingly accepted for option-to-purchase documents.
Implementing Singpass-integrated signing for Singapore businesses
Singpass integration is the key to frictionless digital signing in Singapore.
Singpass Connect API
The Singpass Connect API allows signing platforms to authenticate signers using their Singpass credentials. Over 4 million Singapore residents have Singpass accounts. Integration requires approval from GovTech Singapore and compliance with the Singpass integration guidelines.
Signature tier selection
Use SES for low-risk documents (policy acknowledgements, internal approvals). Use AES for standard commercial contracts. Use QES for high-value or regulated transactions. The signing platform should auto-route to the correct tier based on document type.
Corppass for B2B signing
For business-to-business signing, Corppass (the corporate version of Singpass) enables entity-level authentication. The signatory authenticates as an authorised representative of their company. This provides stronger evidence of corporate authority than individual-level signing.
Court enforceability
Singapore courts have upheld electronic signatures in multiple cases. The ETA explicitly states that electronic signatures are valid and enforceable. For QES signatures, the court presumption of validity under ETA Section 18 applies — making enforcement straightforward.
MAS regulatory acceptance
The Monetary Authority of Singapore (MAS) accepts electronic signatures for most regulatory filings. Banks and financial institutions can submit compliance documents electronically using QES. MAS guidance notes specifically reference the ETA as the legal basis for electronic submissions. For capital market transactions, additional MAS requirements may apply alongside the ETA.
Frequently asked questions
Yes — Singapore's ETA explicitly recognises electronic signatures. SES is valid for most commercial transactions. AES and QES provide stronger legal presumptions for higher-stakes contracts. Singapore is one of the most e-signature-friendly jurisdictions in APAC.
How eSign.AI uses Singpass and Corppass for Singapore signing
eSign.AI integrates with Singpass Connect API so Singapore signers authenticate with their Singpass or Corppass identity directly in the signing flow.
Singpass Connect integration
When a Singapore signer receives an eSign.AI envelope, they can authenticate via Singpass instead of email OTP. The signer taps the Singpass button, logs in via the Singpass app (Face ID, fingerprint, or password), and returns to the signed document. Over 4 million Singpass users can sign without creating a new account or remembering a new password.
Corppass for entity-level signing
For B2B contracts, eSign.AI uses Corppass to verify that the signatory is an authorised representative of their company. The Corppass integration retrieves the company UEN and the signatory authorisation scope — providing stronger evidence of corporate authority than individual signing alone.
Automatic QES via Netrust
eSign.AI partners with Netrust (IMDA-licensed CA) to offer QES for Singapore transactions that require qualified signatures. The signer undergoes a one-time registration with Netrust; subsequent QES signatures are applied automatically within the eSign.AI flow — no separate CA portal visit needed.
산업별 준수 사항
For financial services documents subject to MAS guidelines, eSign.AI captures additional compliance fields (advisor identity, product disclosure acknowledgement) as part of the signing workflow. The evidence package includes Singpass/Corppass authentication data, QES certificate chain, and compliance attestation — meeting MAS audit expectations.







