Every company has an email signature policy. Most of them just aren't written down.
They live instead as a set of half-remembered conventions. The way the founder's signature looks, which everyone loosely copies. A Slack message from two years ago with a logo attached. A vague sense that you probably shouldn't put a quote at the bottom, though nobody could tell you why or who decided.
This works fine at six people. At twenty-five it produces a mess that nobody owns: three logo versions in circulation, four phone number formats, one person with an inspirational quote in italic Comic Sans, and a sales rep whose signature is a 400KB image with no text at all.
The fix is not another all-hands reminder. It's a written policy — one page, unambiguous, that someone owns.
This post explains what such a policy needs to cover and why, then gives you the full template to copy and adapt.
Why bother writing it down?
Three reasons, in ascending order of how much they will eventually cost you.
It ends the argument. Without a written standard, every signature question becomes a negotiation. Can I add my Instagram? Can I use my own headshot? Can I put my pronouns in? Can I add the award we won? Each one individually reasonable, each one answered differently depending on who asks and who's around. A policy converts forty small judgment calls into one decision made once.
It makes onboarding automatic. A new hire on day one has no idea what your signature should look like. In the absence of a document, they will do the obvious thing: copy a colleague's email and edit it. That colleague's signature may itself be three years out of date, so errors propagate like a game of telephone. Every stale detail gets inherited by everyone who joins after it.
It creates a compliance floor. For Indian companies this is not cosmetic. Section 12(3)(c) of the Companies Act, 2013 requires particulars including your company name, registered office address, and CIN on business letters and official publications — an obligation the prudent reading extends to external business email. A written policy is how you make sure the statutory block travels on every signature rather than on the ones people remembered to include it in. It is also what you point to when a diligence process asks how you manage it.
What a good policy actually covers
Before the template, the reasoning. A signature policy needs to answer six questions, and most bad policies fail because they only answer the first.
1. What goes in — and in what order. Not just a list of permitted fields, but the exact sequence and hierarchy. "Include your name and title" is not a spec. "Line 1: Full name, bold, 14px" is.
2. What is explicitly forbidden. This matters more than the inclusion list, because it is the part people improvise. Quotes, animated GIFs, background images, personal social accounts, "sent from my iPhone," environmental footers asking people not to print, and — the perennial offender — the third-party ad that free signature generators append.
3. Who may vary it, and how far. A blanket "no exceptions" policy will be ignored, because sales genuinely does need a booking link and support genuinely does need a helpdesk address. Name the permitted variations rather than pretending they won't happen.
4. Where the assets live. The single most common cause of a broken logo is someone sourcing the image from the website instead of the approved file. Say where the file is and forbid every other source.
5. Who owns it. Somebody has to be able to approve a change and somebody has to be accountable when signatures drift. If the answer is "everyone," the answer is nobody.
6. What happens on change. Rebrands, office moves, name changes, departures. This is the section every policy skips, and it is the one that actually determines whether your signatures are correct in two years.
The template
Everything below is written to be copied into a Google Doc or Notion page and edited. Replace anything in [square brackets]. Delete what doesn't apply.
Email Signature Policy
Company: [Company Name] Owner: [Role — e.g. Head of Marketing] Last updated: [Date] Applies to: All employees, contractors, and interns with a company email address
1. Purpose
Our email signature is the most frequently seen piece of company branding we produce. A person who never visits our website may still see our signature dozens of times. This policy exists to keep that impression consistent, professional, and legally compliant.
It is mandatory. Signatures that do not comply will be corrected.
2. The standard signature
Every employee's signature must follow this structure exactly:
[Full Name]
[Job Title] | [Company Name]
[Phone] | [Email] | [Website]
[Logo image]
[Company Legal Name]
CIN: [CIN] | GSTIN: [GSTIN, where applicable]
Regd. Office: [Registered office address]
Formatting rules:
| Element | Standard |
|---|---|
| Font | [e.g. Arial], with [e.g. Helvetica, sans-serif] as fallback |
| Name | [14]px, bold, [#hex brand colour] |
| Title and company | [12]px, regular, [#hex] |
| Contact line | [12]px, regular, [#hex] |
| Legal footer | [10]px, regular, [#hex muted grey] |
| Logo | Maximum [180]px wide, [60]px tall |
| Overall width | Must not exceed [500]px |
Notes:
- All text must be real text. Nothing that a recipient needs to read may exist only inside an image.
- Phone numbers use the format
+91 98765 43210— country code, space, five digits, space, five digits. - Job titles must match the title on record with HR.
3. Approved variations
The following additions are permitted for specific roles. No other variations are permitted without approval from the policy owner.
| Role or team | Permitted addition |
|---|---|
| Sales and Business Development | One meeting-booking link, labelled "Book a call" |
| Customer Support | Helpdesk email and published support hours |
| [Team] | [Addition] |
Employees may optionally include:
- Pronouns, on the same line as the job title
- A professional headshot, [80]×[80]px, square, supplied by [source]
- Their LinkedIn profile, as an icon only
4. Not permitted
The following must not appear in any company email signature:
- Quotations, mottos, scripture, or personal statements
- Animated images, GIFs, or background images
- Personal social media accounts
- Any logo file not sourced from the approved location in section 5
- Marketing banners not approved by [Marketing]
- "Sent from my iPhone" or equivalent device signatures
- Advertisements or attribution from free signature generators
- Environmental notices ("Please consider the environment before printing")
- Confidentiality disclaimers longer than [two] lines
- Personal mobile numbers, unless the role requires it and the employee consents
5. Brand assets
The only approved logo file for email signatures is located at:
[URL or shared drive path]
Do not download the logo from our website, copy it from another employee's email, or export it from a slide deck. These produce wrong dimensions, wrong colour profiles, and broken image links.
Approved colours: [#hex], [#hex], [#hex]
6. Setup and verification
New employees must configure their signature within [three] working days of their start date, following the setup guide at [link].
After setup, send a test email to [address] from both your desktop client and your phone. Mobile signatures are configured separately and are the most commonly missed step.
Your signature is not considered complete until the mobile version matches.
7. Changes and reviews
When your details change — title, phone number, department — update your signature within [five] working days and notify [owner].
When company details change — logo, registered office, phone number, company name — [owner] will issue an updated template and a deadline. Compliance is mandatory, not optional.
Note on name changes: if the company changes its registered name, the former name must continue to appear alongside the new one for two years, per Section 12(3)(c) of the Companies Act, 2013.
On departure — [IT/HR] will remove the departing employee's details from all shared mailboxes and templates as part of the offboarding checklist.
Review cadence — this policy is reviewed every [six] months by [owner].
8. Ownership
| Responsibility | Owner |
|---|---|
| Signature design and brand standards | [Marketing] |
| Technical deployment and enforcement | [IT / Ops] |
| Onboarding and offboarding steps | [HR] |
| Legal and compliance content | [Company Secretary / Legal] |
Questions and exception requests go to [name / email].
End of template.
Rolling it out without annoying everyone
A policy nobody follows is worse than no policy, because it creates the illusion of control. Three things determine whether yours sticks.
Do the work for people. Do not send a policy document and ask forty people to re-read it and rebuild their signatures. Send each person their signature, pre-built, with their own details filled in, and instructions for pasting it in. Compliance is inversely proportional to effort required.
Give a deadline and then check. "Please update when you get a chance" produces a 40% completion rate. A date, followed by an actual audit, produces something closer to 90%. The audit is simple: BCC yourself on a company-wide email, or ask everyone to send one test email to a shared address, and review them in a grid.
Explain the why, once. People comply more readily with rules they understand. A single line — "this is a statutory disclosure requirement, and the penalty for getting it wrong runs per day" — does more than three paragraphs of brand-consistency language.
The uncomfortable truth about policies
Here is what a policy cannot do: enforce itself.
Six months after rollout, entropy resumes. Someone gets a new laptop and rebuilds their signature from memory. Someone joins and copies a colleague. Someone's Outlook updates and quietly drops the formatting. You will not notice, because you never see your own team's outbound email.
A written policy converts an undefined problem into a defined one. That is genuinely valuable — you cannot fix what you have not specified. But specification and enforcement are different problems, and only one of them is solved by a document.
The structural fix is to remove the policy from human hands entirely: a single template deployed centrally to every mailbox, where the correct signature is not something each person has to apply but something they cannot avoid. The policy then becomes documentation of what the system does, rather than a set of instructions forty people have to remember.
That is what we are building at Signforus — one template, deployed across your whole team, priced flat rather than per seat, built for Indian teams of five to fifty. We're in early access now.
Either way, write the policy first. Even if you never automate it, you cannot enforce a standard you have not written down.




