Sign a Card with an additional keyThis guide shows how to sign a Card with an additional private key for providing your digital solution with the highest level of security.When you care about your security, you shouldn't trust anyone. Thus, to be sure that a user's Card wasn't replaced with another one, you have to add an additional signature into a Card.Before publishing a user's Card on Virgil Cards Service, we recommend that you sign a Card with an additional private key, for example, the private key of your Application Server. Remember, you cannot change a Card's content after it's published. Generate a Private KeyYou can generate a private key for your server and save it in a secure key storage with the following code:# this language is not supported yet.Also, you can generate a private key using the Virgil CLI.Sign a user's CardIn order to add the signature of your app server to a user's Card you need to:transmit an existing user's Card to your server (you must do this before publishing). You can use any suitable way to transmit the Card.If you need to export a user's Card to a string representation on a client side or import a Card from the string representation on a server side, use the following lines of code:# this language is not supported yet.sign a transmitted user's Card with a private key of your server:# this language is not supported yet.Then Virgil SDK sends back a signed Card to the client side.setup Virgil Card Verifier. By default, CardVerifier only verifies the signatures of a Card owner and Virgil Cards Service. So when you add an additional signature to users' Cards, you also have to set up CardVerifier.