Light bulb Limited Spots Available: Secure Your Lifetime Subscription on Gumroad!

Aug 30, 2026 · 9 min read

Is Adobe Acrobat Sign Tracking Your Email? What It Logs

Adobe publishes a support page called "Understand the Acrobat Sign tracking pixel." That one document changes the answer to this question, and it changes which defences are worth setting up.

An agreement lands from adobesign@adobesign.com with a blue Review and sign button. You open the message on your phone at a red light, plan to deal with it after dinner, and the sender already has a timestamp. Adobe Acrobat Sign tracking begins one step earlier than most people assume, because Adobe's own documentation confirms an email tracking pixel used to record Email viewed events. That is a real beacon in a real inbox, and it is the part you can actually stop.

Key Takeaways

  • Adobe documents a tracking pixel in Acrobat Sign notification emails that fires the Email viewed event when the message is opened, before you click anything.
  • Only Enterprise tier accounts can have that pixel switched off, and only by contacting Acrobat Sign support; once disabled, Email viewed moves to fire when the agreement itself is opened.
  • Agreement viewed is a separate event recorded when a recipient opens the signing URL, and Adobe records it once per status change rather than once per visit.
  • Since 16 June 2021 the audit report does not record recipient IP addresses by default; an account admin has to turn Request IP address from recipients back on.
  • By default the audit report is attached to the agreement PDF sent in the final Signed and Filed email, so every counterparty receives the event log with the contract.

Does the Notification Email Carry a Tracking Pixel?

Yes, and Adobe says so in plain language rather than leaving it to be reverse engineered.

The support article Understand the Acrobat Sign tracking pixel states that Acrobat Sign uses an email tracking pixel to record Email viewed events, and that the pixel is what determines when the event triggers. It also spells out the escape hatch and its price: Enterprise tier accounts can ask Acrobat Sign support to disable the pixel, and when they do, the Email viewed event changes to fire when the agreement is opened instead of when the email is opened. Notifications and audit logs keep reporting as before.

Read that carefully, because the consequences are not symmetrical:

  • The switch belongs to the sender, not you. A recipient has no way to request it, and most senders on Team or Business tiers cannot buy it at any price.
  • Disabling it does not delete the event. Email viewed still appears, it simply starts meaning something else, so an audit line reading Email viewed may describe a pixel fetch on one account and a page load on another, with nothing on the report telling you which.

If you want to see what a beacon like this looks like in raw message source, our walkthrough on detecting email tracking pixels in Gmail shows where to look.

Does Adobe Sign Track When You Open a Document?

It does, through a separate event called Agreement viewed, recorded when a recipient opens the agreement via the signing URL or when the sender opens it from the Manage page.

Adobe's guidance on including view events in the audit report adds a limit that nobody markets: views are recorded once per status change of the agreement. Open the same contract eleven times over a weekend while nothing about it changes, and the audit report shows one view, not eleven. That is a meaningfully quieter record than page level reading analytics, and it is the single biggest difference between an e-signature platform and a document sharing tool.

The setting is available on Team, Business and Enterprise tiers, with groups inheriting the account level value unless a group admin overrides it, so whether your reading gets logged at all depends on a checkbox in someone else's console. Senders can also subscribe to Agreement viewed as a personal notification, which is how a counterparty ends up with a phone alert the moment you open a settlement offer at midnight.

A printed paper contract open at a blank signature line on a walnut desk with a fountain pen resting across it in soft daylight

What Appears on the Audit Report, and Who Sees It?

A per recipient event log covering the agreement from creation to resolution, delivered by default inside the finished PDF.

Adobe describes audit reports as authoritative documents articulating how a document was handled from creation until it was fully resolved, and the settings that attach them to emails and downloads ship with the report appended to the agreement PDF in the final Signed and Filed email. Four details matter to a recipient:

  • Timestamps are standardised to GMT unless an admin switches the report to the account or group offset, so your local hour is trivially recoverable from the log.
  • IP addresses are off by default. Adobe moved the default from true to false on 16 June 2021 when the control reached the customer facing interface, and on 26 April 2024 tied the legacy behaviour to the account creation date rather than the user's.
  • When enabled, IP collection is not limited to signatures. Adobe's documentation is explicit that addresses are collected for all events, and that they surface on the audit report rather than in the agreement activity log.
  • Distribution is the real exposure. The report travels with the contract to every party who receives the signed file, not to a dashboard the sender forgets about.

How Does This Differ From DocuSign's Certificate of Completion?

Two products with the same legal job made opposite choices on the two settings a recipient cares about, which is why one blanket answer for e-signature mail is wrong.

Behaviour Adobe Acrobat Sign DocuSign
Documented open pixel in the notification Yes, published by Adobe None we could verify
Recipient IP on the audit trail Off by default since June 2021 Printed as "Using IP Address"
Repeat views of the document One entry per status change Viewed recorded on the certificate
Trail bundled into the finished PDF Yes, by default Yes

The inversion is the story. When we examined what DocuSign records and what you can block, the honest conclusion was that a pixel blocker buys you almost nothing, because every documented event fires after your click and your IP goes on the certificate regardless. Acrobat Sign flips both halves: the inbox layer is where the tracking starts, and the IP field most people fear is usually blank. Blocking images is close to useless against DocuSign and genuinely effective against Adobe.

Which Domains Are Involved, and What We Could Not Verify

Adobe publishes the sending and hosting domains because IT departments have to allowlist them, and that list is the honest boundary of what can be stated.

  • adobesign.com sends the notifications; migrated accounts send from adobesign@adobesign.com after the move away from echosign.com.
  • Regional signing hosts follow the shard pattern secure.na1.adobesign.com, with shards including na1 through na4, eu1, jp1, au1 and in1.
  • Content and legacy domains. Adobe's system requirements tell administrators to allow *.adobesign.com, *.adobesigncdn.com, *.echocdn.com and *.echosign.com.
  • Not verified, so not asserted: which of those hosts actually serves the tracking pixel image, the exact request path, and whether Acrobat Sign rewrites the Review and sign link through a redirect for click measurement. Adobe documents the pixel's existence and its effect, not its URL.

Which of the Three Tracking Types Can a Blocker Stop?

One of three, cleanly, and pretending otherwise is how privacy tools lose people's trust.

  • Email open tracking: blockable. The pixel is a passive remote image request. Refuse the fetch and Email viewed never fires, exactly as it would not fire for a message you never opened.
  • Document view tracking: not blockable. The code that writes Agreement viewed is the code that renders the document you asked to read. No extension separates them, and any product claiming to is selling reassurance.
  • Click and redirect tracking: blockable where it exists. Signing links routinely arrive inside a sales sequence rather than straight from Adobe, and those wrappers do measure clicks. The distinction is unpacked in open tracking versus click tracking.

Regulators draw the same line. The EDPB's Guidelines 2/2023 on the technical scope of Article 5(3) ePrivacy Directive place tracking pixels and tracking links inside the consent rule, treating a beacon planted in a message as storage and access on your terminal equipment. A signature audit trail sits elsewhere: a server side record of a transaction you initiated, retained because the eIDAS Regulation (910/2014) and contract law expect a platform to evidence it. Same email, two legal objects, and compliance teams should not write one policy for both.

How Do You Reduce What the Sender Learns?

Four moves, ordered by what they actually buy, each with its ceiling stated:

  • Run a pixel blocker inside Gmail. This is the one defence aimed squarely at the mechanism Adobe documents, and it strips trackers while ordinary images keep rendering. Ceiling: the inbox. It has no authority over adobesign.com.
  • Turn off automatic image loading. In Gmail open Settings, See all settings, and under Images choose Ask before displaying external images. Ceiling: it kills the pixel and the look of every newsletter you receive.
  • Open the signing session in a private window. A clean session limits what Adobe's page can correlate with your other browsing. Ceiling: Agreement viewed still fires, and if the sender's account collects IP addresses, a VPN changes the value recorded but never removes the field.
  • Ask for a plain PDF when you only need to review. The most effective step and the one almost nobody takes: a PDF generates no view event and no audit line. Ceiling: useless when you actually have to sign, and some senders refuse on policy grounds.

Be clear about the floor beneath all four. If you must sign, you must load a first party page on Adobe's servers, and that page load is the event. Our wider guide to blocking email tracking in Gmail covers the same tradeoffs across every category of tracked mail.

What This Means for Your Inbox

A newsletter learning you opened it at 7am has learned nothing worth money. A counterparty learning you opened a redundancy agreement four minutes after it arrived, then went quiet for six days, has learned something they can price into the next call. Adobe's Trust Services documentation puts the platform at over 8 billion electronic and digital signature transactions, so one documented pixel in a notification template is among the most widely deployed open beacons in business email. It is also, unusually, one a browser extension can defeat outright, because it obeys the same rules as any other remote image.

The pattern repeats across the category with different weightings. PandaDoc's page level reading analytics log how long you lingered on clause four; DocSend records every page turn in a pitch deck; and Adobe's own marketing stack behaves differently again, as we found in what Adobe Campaign tracks. Acrobat Sign sits in an odd middle: more honest than its rivals about the pixel, quieter than them on the audit trail, and the only one of the four where the fix is a setting away. The opposite end of that spectrum is what SignNow's history log records and staples to the finished PDF, where the record travels with the document to everyone who is ever sent it.

Stop Email Tracking in Gmail

Block the Adobe Acrobat Sign tracking pixel and 1,000+ other email trackers in Gmail

Try Gblock Free for 30 Days

No credit card required. Works with Chrome, Edge, Brave, and Arc.