When you become an e-resident, you receive 2 key identifiers with your e-Residency digital ID card: your Estonian personal identification code and the digital certificates linked to your card. These enable you to securely access Estonian e-services and sign documents online. In this article, you’ll learn what your digital identity consists of and how to protect it.
Your Estonian personal identification code
When granted e-Residency, you will be issued an Estonian personal identification code - an 11-digit number that includes your birth date and gender information. It functions similarly to a national ID number and is used to identify you in Estonian systems such as government portals, banking, and the Business Register.
This personal code is issued for life, even if you change your name or apply for a new document in Estonia. It is public by design, meaning it is no more sensitive than your name and birthday. You’ll find your personal code printed on your digital ID card.
How your personal code is structured:
- The first digit indicates gender and century of birth
- 1 - male, 1800-1899
- 2 - female, 1800-1899
- 3 - male, 1900-1999
- 4 - female, 1900 - 1999
- 5 - male, 2000 - 2099
- 6 - female, 2000 - 2099
- Digits 2–3: Year of birth (last two digits)
- Digits 4–5: Month of birth
- Digits 6–7: Day of birth
- Digits 8–10: Order number
- Digit 11: Control number
For example, if your personal code is 3851020xxxx you would be a male born in 1985 and your birthday is October 20th (3 85 10 20 xxxx).
Your certificates and digital safety
Your e-Residency ID card is a digital means of identification, and it carries two certificates that represent your identity in online environments:
- the personal identification certificate (which requires the use of PIN1) is used for secure login
- and the signing certificate (which requires the use of PIN2 is used for legally binding signatures.
The certificates are valid for the same period of time as your card. You can read more about the certificates at the id.ee website. If you wish, you can also already read the terms and conditions now, but we suggest reading them when you receive your card.
It’s very important that your certificates are always protected. They are protected for as long as your PIN and PUK codes (security codes) don’t fall into the wrong hands along with your card.
Your security codes
When you collect your e-Residency digital ID card, you will also receive a sealed security code envelope containing 3 codes:
- PIN 1 is for authentication in an online environment. You can securely log into e-services and decrypt files.
- PIN2 is for digital signing. Digital signature is equal to handwritten signature.
- PUK enables to change or reset blocked PIN codes.
Because these codes are critical to your digital identity, they cannot be recovered online. If you lose the PUK code and have locked or lost your PIN codes, you will need to either re-apply for e-Residency or book an appointment at an Estonian embassy to obtain a new set.
What is a digital signature
A digital signature allows you to sign documents online in a secure and legally binding way. It confirms both your identity and that the document hasn’t been altered after signing.
In the EU, digital signatures are governed by the eIDAS Regulation, which ensures your signature is valid and recognised across all EU member states. With your e-Residency digital ID, you can give a qualified electronic signature - the highest level of trust under eIDAS - equivalent to a handwritten signature.
Outside the EU, digital signatures are increasingly accepted in international business. While legal recognition may vary by country, eIDAS-compliant signatures are widely trusted for secure cross-border transactions.
Before signing any document, always verify the identity of the other party. You can do that using the official DigiDoc4 application. If the recipient of a signed document does not use this software, third-party tools are available to verify signatures.
How to protect your digital identity
- Do not give your e-resident digital ID card to other people. If misused, actions taken with your identity may be legally binding.
- Protect your PIN codes. Keep the codes in a secure location that others will not have access to and where you will not lose them. Never write them on your card or keep them together.
- Remember your PIN codes. You can change your PIN codes, if they are difficult to remember.
- PIN1 and PIN2 should be different. If the two codes are very similar, it may be easy for someone to guess the other code if they gain access to one.
-
Do not store PIN codes on your web browser. Web browsers can temporarily cache PIN1 code during an active browser session. Because of this, it may be possible to enter e-services without entering your PIN1 code. Caching your PIN1 code can be avoided by following these steps:
- After using your e-Residency digital ID in an e-service, log out from the service using the exit, log out or close buttons.
- Remove your e-Residency digital ID from the card reader.
- Close all web browser windows after you have finished using an e-service.
- If your card gets lost or stolen, act promptly!
Lost or stolen card or security codes
In case your e-Residency digital ID or PIN codes are stolen, or permanently lost, immediately notify the ID help centre by phone at (+372) 677 3377 to suspend your certificates.
The phone line is open 24/7.
ONLY suspend your certificates if you are positive they were stolen or lost as they cannot be reactivated remotely. It is not possible to reverse the process.
Digital identity and eIDAS
You can read more about digital identity and legal framework of eIDAS on the Estonian Information System Authority website.