Token, PIN, PUK - a simple explanation of the differences so you always know which code to enter when signing documents.

Token, PIN, PUK - these three abbreviations can mess things up. See what situations you use them in and why getting them wrong can block your signature.
Token vs PIN vs PUK - a guide for electronic signature users
4-minute read Updated: August 18, 2026

What is the difference between a Token and a PIN/PUK?

We hear this regularly on the podpisano.pl hotline: „I don't know what the token is...”,

„I entered the token number instead of the PIN and now nothing works...” or

„Is a token the same as a PUK?”.

It's not your fault - the terms are confusing, and the messages in the applications don't always help. That's why below we explain what's what and how to avoid trouble with a qualified signature.

Token, PIN and PUK - they are not the same thing!

In the context of a qualified signature, each of these elements has a different role:

  • Token – This is a randomly generated, one-time verification code (OTP – One-Time Password) that you receive in the mobile app or via text message. The token is used to authorize an electronic signature, for example, in SimplySign. Token is not a password or PIN! It's a temporary, dynamic code that works similar to online banking codes.

 

  • PIN – this is your personal, unique code that you enter every time you sign a document if you use this solution Certum Mini or SimplySign. It’s like a key to your digital signature. The PIN is fixed (until you change it) and can be confused with a token, but it serves a completely different purpose.

 

  • PUK - used in emergency situations. If you enter the wrong PIN three times, your signature will be locked. Then you have to use the PUK code to unlock the signature and set a new PIN. If you also block the PUK (already. after 3 wrong attempts), the signature is permanently blocked.

 

In which signature what do we use?

SimplySign (Asseco):

 

  • You sign mobile or on your computer
  • You enter login, password 
  • You generate a TOKEN - when you need to connect to the application on another device (such as SmartSign on a desktop). When you sign on your phone, TOKEN will not be necessary 
  • You select the file to sign and click sign You enter the PIN for signature confirmation 
  • If you have a problem with your PIN, you need a PUK to set a new PIN
  • TOKEN is generated by the mobile application .

     

Certum Mini (reader + cryptographic card):

 

  • You sign on a computer with a USB reader connected with a signature card 
  • You choose the document to sign
  • You click sign
  • You choose a signature key (i.e. your USB reader with a signature card)
  • You need to provide a PIN for the card,
  • If you have a problem with your PIN, you need a PUK to set a new PIN,
  • TOKEN does not occur here.

     

Most common mistake: Token instead of PIN

This is a typical situation: a customer uses SimplySign, but thinks he needs „that code from the app”. He enters the token in place of the PIN, three times... and boom - signature blocked . Not because he messed up something, but because the system does not recognize the token as a valid PIN.

What to do?

  1. Don't panic. The signature has locked up, but you can unlock PUK code.
  2. Log in to panel.certum.co.uk to your account that you created during the signature installation.
  3. On the dashboard (main page after logging in), select your signature that you have locked. In the signature menu (three vertical dots) Select unlock PIN or change PIN/PUK.
  4. Enter the PUK code - which you assigned during activation 
  5. Set a new PIN.

If you do not have a PUK or have blocked it, you will need to make a new certificate and card.

Who stores this data?

Neither we (podpisano.pl), nor Asseco, nor Certum we do not store Your PIN or PUK. This is personal information, known only to you. Losing this information means you need to issue new credentials. Treat them like your bank login credentials.

Summary
  • Token = one-time code, generated in the mobile app, is used to log in to the certificate (e.g., in SimplySign) in the cloud.

  • PIN = code used for signing, It confirms the identity of the person providing the qualified signature, which gives the document legal force.

  • PUK = emergency code To unlock the PIN.

Don't mix up these concepts! When in doubt, contact podpisano.pl. We will help you regain control of your signature.

If you have questions, or a problem accessing the signature, you can always write to us: [email protected]

Qualified signatures SimplySign and Certum Mini

If you have any concerns or questions, please contact us

+48 22 417 05 55

We'll answer your questions, find a time that works for you, and match you with an advisor at one of our locations throughout Poland.

You can also write an email from us [email protected]. 

Check also:

Do you need help?

Find what you're looking for