
Digital signatures are meaningless unless you can verify them for authenticity. When you are certain a document came from a user who signed a PDF, you can accept the validity of the signature. If you are not sure of where a signed document came from, you need to acquire a public certificate and use it to verify a signature.