Bologna, Italy
(from 8 to 22)

Certified Web Permanence of Online Content

Prove that a page or document stayed online for a defined period with scheduled, timestamped forensic acquisitions (EU by default; international on request)

If you need to demonstrate that a web page, document, social post, or any online content remained publicly available for a specific period of time (days, weeks, months), our Web Permanence Certification service provides a structured and independently verifiable technical record that can be used as evidentiary support in civil or criminal matters, subject to applicable procedural rules and the assessment of the competent authority. Through scheduled and repeated captures with a qualified eIDAS timestamp on each capture, we document the availability and persistence of the content over time and generate a certified timeline of its online presence. Each capture follows recognized digital evidence best practices (e.g., ISO/IEC 27037:2012) with strong focus on confidentiality and GDPR-compliant handling.

We certify the permanence of most types of online content: pages involving ongoing reputational harm, misleading advertising kept online despite formal notices, counterfeit products listed on e-commerce websites, copyrighted content published without authorization for extended periods, confidential corporate information exposed on public pages, persistent fake reviews on platforms, repeated threats or insults posted over time on social networks, and other scenarios where the duration of publication is a key element.

What we certify in online content permanence

  • Verified continuous presence: scheduled captures at the agreed frequency (hourly/daily/weekly) throughout the monitoring window, documenting that the content remained reachable online.
  • Qualified timestamp on every capture: each capture receives an eIDAS qualified timestamp, certifying the exact date/time of that capture and enabling an independently verifiable sequence.
  • Full content for each version: for every capture we preserve visible text, images, embedded media, user comments (when accessible), technical metadata, HTML source code, and linked resources (CSS/JS) as technically feasible and relevant.
  • Documented content variations: if content changes during monitoring, we document the differences between consecutive versions via comparison (diff), when applicable.
  • Technical accessibility checks: for each capture we record HTTP status (200/404/etc.), load time, server IP, response headers, and SSL certificate details when HTTPS.
  • Server IP geolocation: we track where the content is being served from (country/city/ISP) as a technical element that may be relevant in cross-border contexts.
  • SHA-256 cryptographic hashes: each acquired file receives a unique fingerprint for integrity verification over time.
  • Optional navigation video: upon request, we can provide screen recordings of selected captures showing the access and on-screen rendering at the time of capture.
  • Consolidated timeline with index: a final report summarizing the full monitoring period, highlighting key changes and any availability interruptions or outages.
  • FEDIS web forensics declaration: a technical statement describing the capture methodology and chain-of-custody elements to facilitate use in legal contexts.

Use cases for Web Permanence Certification

Ongoing online defamation

Scenario: A defamatory article about your company or person remains published for weeks/months despite takedown requests. The other party claims “it was online only briefly” or “it was removed immediately.” Need: document that the content was publicly reachable over an extended period.

What we certify: daily captures for 30/60/90 days, each with a qualified eIDAS timestamp, preservation of content and technical elements, HTTP reachability status (200 or other), and optional documented edits via version comparison.

Legal use: technical evidentiary support for legal action and formal notices regarding reputational harm. The documented duration can be a relevant factor for counsel and authorities in case assessment.

Persistent misleading advertising on e-commerce

Scenario: A competitor keeps product pages online with misleading claims (e.g., false certifications, origin claims, questionable discounts). Content stays up for weeks. Need: document persistence for formal complaints and legal steps.

What we certify: continuous monitoring of product pages for 30/60 days with periodic captures, preservation of descriptions, claims, prices, images, and technical metadata, plus comparisons to detect edits (e.g., after a formal notice).

Legal use: technical evidentiary support for consumer protection and competition-related actions, depending on jurisdiction and counsel strategy.

Copyright infringement lasting weeks or months

Scenario: Your music/video/photo/text is posted without authorization and stays online for an extended period. The publisher claims “removed immediately.” Need: document how long it remained accessible and what relevant indicators were visible.

What we certify: periodic captures over the infringement window, preservation of page elements (including visible counters if available), indications of monetization (if displayed), technical headers useful to identify hosting, and a full reachability timeline.

Legal use: evidentiary support for civil claims, takedown notices, and further actions. International instruments and steps are assessed case-by-case with counsel.

Confidential corporate data exposed publicly

Scenario: An ex-employee or partner publishes confidential documents (price lists, customer data, strategy) on a public website or forum. Need: document that the material remained publicly accessible over time.

What we certify: periodic captures of the relevant pages and publicly accessible elements (URLs, visible content, publicly shared documents) while respecting lawful access boundaries and your counsel’s instructions, plus a timestamped availability timeline.

Legal use: technical evidentiary support for civil claims and related assessments, including potential data protection implications when personal data is involved.

Persistent fake reviews on platforms

Scenario: false or misleading reviews remain visible for months despite platform reports. Need: document ongoing public visibility over time.

What we certify: periodic captures of the business profile and reviews, preservation of text, rating, date and visible author elements, observed changes in the overall score over time, and a structured timeline.

Legal use: evidentiary support for action against the author (when identifiable) and/or other measures, based on counsel’s strategy.

Repeated threats or harassment via social posts

Scenario: a subject repeatedly publishes threatening/harassing posts on social media. Posts remain online despite reporting. Need: document repetition over time and persistence/edits.

What we certify: periodic monitoring of publicly accessible profiles/posts, capture of content with context, a timestamped chronological sequence, technical reachability data, and version comparisons for later edits.

Legal use: technical evidentiary support for legal assessments of threats/harassment and for takedown/escalation steps, depending on counsel evaluation.

Extremely illegal or highly sensitive content (special procedure)

Scenario: you have discovered extremely illegal or highly sensitive content and must document reachability times for immediate reporting to competent authorities.

Important notice: in these cases we operate only under a special procedure and only after a legality and minimization review, aligned with authorities and/or your legal counsel. We do not perform activities that could imply possession or dissemination of illegal material. The goal is a safe and compliant report with maximum caution.

Legal use: technical support for reporting and reconstruction of availability windows under the guidance of authorities and applicable rules.

Request a tailored quote

Describe the content to monitor (URL, type, desired duration, capture frequency). We provide a technical feasibility assessment, a proposed capture plan, methodology details, and a quote. Response and start times may vary based on complexity and workload, but in many cases we can start quickly.

Request an urgent free quote

Why simple screenshots do not prove online permanence

Problem 1: A single screenshot does not prove duration

A screenshot shows that content existed at one specific moment, not that it remained online for days/weeks/months. Without time-distributed captures, documenting persistence is significantly harder.

Problem 2: Without verifiable dating, it is easier to challenge

Screenshots without a qualified timestamp can be portrayed as editable (image editing or client-side alterations). Without a verifiable timestamp and documented methodology, evidentiary strength can decrease.

Problem 3: Intermediate edits may be missed

If the author partially edits the content over time, sporadic screenshots may not capture the full evolution. A planned series of captures supports clearer reconstruction of versions and timelines.

Solution: scheduled certification with a verifiable timeline

Our service is based on scheduled captures at the agreed frequency (hourly/daily/weekly) throughout the monitoring period. Each capture is qualified-timestamped (eIDAS) and protected with SHA-256 hashes so files remain verifiable over time. This produces a structured timeline documenting reachability, outages, and changes, supported by a clear final report. Admissibility and evidentiary weight depend on the specific case and the competent authority’s assessment, but the workflow is designed for maximum traceability and independent verification.

How Web Permanence Certification works

  1. Contact and monitoring parameters: you provide URL/content, desired duration (days/weeks/months), preferred frequency, and optional requirements (video, diffs, alerts).
  2. Scheduling automated captures: we configure a system to perform captures on schedule and to log outcomes and technical events.
  3. Baseline capture with timestamp: we run an initial full capture (screenshots, HTML, relevant resources, HTTP headers, SSL details if HTTPS) and apply a qualified timestamp.
  4. Continuous scheduled captures: during the monitoring window, captures run at the predefined frequency. Errors/unavailability (404, timeout, server error) are logged as technical events.
  5. Automated change detection: where applicable, we compare consecutive captures to highlight textual, visual, and technical changes.
  6. Qualified timestamp for each capture: every capture is timestamped after acquisition, binding the files to an independently verifiable time reference.
  7. Optional: navigation video: upon request, we record selected captures showing access and rendering, also timestamped.
  8. Optional: event monitoring: where technically feasible, extra captures can be triggered by relevant events (change, downtime, technical variation), with notifications.
  9. Backups and chain of custody: secure storage, integrity checks (hash), access logging, and documented custody elements.
  10. Final consolidated timeline: index and chronology with key events and references to the original timestamped files.
  11. Technical report: final report with clear executive summary, methodology, and appendices (English/Italian; additional languages on request).
  12. Complete package delivery: secure delivery of report, original captures, timestamps, SHA-256 hashes, FEDIS declaration, and technical documentation.
  13. Post-delivery support (optional): technical support for counsel to integrate the package and clarify methodology.

Available capture frequencies and typical uses

Hourly capture (maximum granularity)

When to use: highly volatile content that may be removed/edited at any time (fraud, phishing, fast-evolving threats).

Benefits: higher detail, better chance to document brief changes. Cost note: more captures generally mean higher cost.

Daily capture (balanced)

When to use: standard cases such as defamation, misleading advertising, copyright infringement, reviews, exposed information.

Benefits: strong balance between evidentiary support and cost for 30/60/90-day monitoring.

Weekly capture (long-term monitoring)

When to use: long monitoring periods on stable content (6–12 months).

Benefits: cost-effective for long durations. Limitation: short-lived changes between weeks may be missed.

Event-triggered capture (smart monitoring)

When to use: when you want a capture every time content changes and the platform/technology supports reliable detection (webhooks or robust change detection).

Benefits: precise documentation when needed. Note: more complex setup; not always compatible.

Timestamp options and international use

Qualified eIDAS timestamp (standard, included)

A timestamp issued by an EU qualified Time Stamping Authority under eIDAS Regulation 910/2014. A robust standard for independently verifiable dating in the EU context, included when part of the service plan.

International RFC 3161 timestamp (optional)

RFC 3161 is a widely used cryptographic timestamp standard. It may be useful for interoperability outside the EU, depending on counsel’s strategy and the target jurisdiction.

GDPR compliance and sensitive data handling

When monitored content includes personal data, we apply appropriate technical and organizational measures (encryption, access controls, logging, purpose-limited retention). Documentation can be provided on request when necessary. Maximum confidentiality.

What the Web Permanence Certification package includes

  • Consolidated certified timeline: digitally signed PDF report with the full capture chronology, index, event summary, and executive overview.
  • All original forensic captures: for each timestamp: high-resolution PNG screenshots, HTML, relevant resources, HTTP headers, SSL details (if HTTPS), and technical logs.
  • Individual timestamps: eIDAS timestamp evidence (or optional RFC 3161) per capture, including hash information for independent verification.
  • Change diff analysis: version comparisons with highlights, where applicable.
  • Hosting technical analysis: IP, whois elements, geolocation, provider, technical changes over time, SSL analysis, and security headers when available.
  • SHA-256 hashes: a hash list for integrity checks, optionally timestamped as part of the package.
  • Navigation video (optional): screen recordings of selected captures, timestamped.
  • Structured metadata: JSON/XML/CSV export of capture metadata (dates, URLs, hashes, HTTP status, file sizes).
  • FEDIS continuous web forensics declaration: statement of methodology and chain-of-custody elements, digitally signed.
  • Detailed technical/legal report: deeper analysis and practical recommendations for counsel depending on the scenario.
  • System logs: technical logs of captures and access events when included in the plan.
  • Presentation guide: practical guidance on how to verify timestamps/hashes and how to structure references in legal documents.
  • Optional blockchain anchoring: transaction ID, public verification instructions, and an anchoring statement linking hashes to the recorded block.

FAQ – Web Permanence Certification

Q: How much does Web Permanence Certification cost?

A: Pricing depends on duration, capture frequency, technical complexity, scope, and optional features (video, anchoring, international timestamps). Indicative range for a standard case (daily captures, 30 days, one page): €800 to €1,500. Longer periods or higher frequencies may increase costs accordingly. Request a tailored quote for an accurate estimate.

Q: Can I start monitoring if the content has already been online for days?

A: Yes. We certify permanence from the start of our monitoring onward. Prior screenshots can be included as non-certified complementary elements if you wish. Where public historical sources exist (cache/archives), we can capture them and timestamp the consultation as of today.

Q: What if the content is removed during monitoring?

A: Removal or unavailability is documented as a technical event (404, timeout, redirect, server error) with the date/time of each verification. This helps reconstruct when the content was reachable and when it was not, based on the performed checks.

Q: Is it valid for heavy JavaScript or dynamic content?

A: In many cases yes. We use browser-based capture workflows that can render JavaScript and dynamic elements. For complex applications we assess feasibility and configure specialized flows when required.

Q: Can I monitor content behind login?

A: Yes, if you have lawful access. We can configure authenticated captures via secure channels and clear boundaries. We do not capture content through unlawful circumvention or ToS violations. Legality is reviewed case-by-case, often together with your counsel.

Q: Can I use this package in court?

A: The package is designed for traceability and independent verification (qualified timestamps, hashes, report, chain-of-custody elements). Admissibility and evidentiary weight depend on the specific case and the competent authority’s assessment. We can provide technical support to help counsel integrate the package into filings.

Q: What is the minimum/maximum monitoring duration?

A: There is no strict technical maximum; duration is defined by your objectives. Typical starting points are 7 or 14 days, often extended to 30/60/90 days depending on the case. For long-term monitoring, custom plans can be arranged.

Q: Can I change capture frequency during monitoring?

A: Yes. Frequency can be adjusted as the case evolves. Changes are documented in the timeline for transparency and pricing is updated accordingly.

Timing and responsiveness

If harmful content is already online, starting structured documentation early can be important. Monitoring documents permanence from the moment it begins. Align the overall strategy with your lawyer, while technical documentation can start in parallel.

Start monitoring

Single certification vs permanence certification

It is important to understand when a single certification (a snapshot in time) is enough, and when a permanence certification (a time-based chronology) is needed:

Single certification (snapshot)

When it is sufficient: relatively static content, you only need to prove it existed on date X (not for how long), pre-legal notices where a timestamped capture is a strong warning, emergency acquisition before removal.

Cost: typically lower (indicative €100–€300 per certified capture, variable). Timing depends on complexity and workload. See our standard web content certification service.

Permanence certification (timeline)

When it is necessary: when the duration online is decisive (damages, repetition, ignored notices), when you must document edits over time, when a full event chronology is required.

Cost: higher due to multiple captures and timestamps (indicative €800–€3,000+ depending on duration/frequency), justified when time-based persistence is a core issue.

Rule of thumb: if you are thinking “I need to prove this stayed online for weeks,” permanence certification is usually appropriate. If you are thinking “I need to prove it existed on date X,” a single certified snapshot may be enough.

Free technical short consultation

Not sure whether you need permanence or a single snapshot? How long should monitoring run? Which frequency is optimal? Contact us for a short free technical consultation (around 15–20 minutes, subject to availability) so we can outline the most effective and cost-efficient approach for your specific scenario.

Request a free consultation

Quality, traceability and compliance

  • Aligned with ISO/IEC 27037:2012 principles: methodology inspired by international guidance for identification, collection, acquisition, and preservation of digital evidence.
  • Qualified operators: captures and reporting are handled by experienced professionals in web forensics and digital evidence.
  • Documented chain of custody: traceability from capture to delivery with logs and integrity checks.
  • GDPR-aligned processing: security measures, access control, minimization and retention discipline, with documentation available when needed.
  • Methodological transparency: the final report describes steps and criteria so counsel and experts can review and verify the work.