VeriFactu responsible declaration: what it is and how to verify it
Art. 13 of RD 1007/2023 requires the software producer to certify its VeriFactu compliance through a responsible declaration. As a user, if your software doesn't have one, your exposure to art. 201 bis LGT (€50,000/year) is real.
The VeriFactu responsible declaration is the document by which the software manufacturer certifies that its system meets the requirements of RD 1007/2023 and Orden HAC/1177/2024. It's the mechanism the regulation sets out in art. 13 to prove the software's conformity. As a user, you must verify that your provider has it available. If not, you're using software without a compliance guarantee.
There's no official AEAT approval for VeriFactu software. The manufacturer's responsible declaration is the only formal evidence available to the user.
What a valid responsible declaration must include
| Element | Why it matters |
|---|---|
| Identification of the software producer | Must be the company that manufactures or markets the software, not a third party. |
| Identification of the software (name and version) | Must cover the specific version you use, not just the product name in generic terms. |
| Reference to RD 1007/2023 and Orden HAC/1177/2024 | Must explicitly cite the regulations it claims to comply with, not a generic reference to 'VeriFactu'. |
| Statement of compliance with technical requirements | Chained SHA-256 hash, electronic signature, event log, QR code, and, if applicable, submission to AEAT. |
| Date and signature of the legal representative | Must be a formal document, not just a note on a website or a support email. |
How to verify your software has a responsible declaration
Ask your current provider for the declaration
Write to support or check your current software's documentation. Look for 'VeriFactu responsible declaration,' 'VeriFactu conformity certificate,' or similar. If it's not published or available on request, that's a red flag.
Verify it mentions RD 1007/2023 and Orden HAC/1177/2024
A valid responsible declaration must explicitly reference the regulation it claims to comply with. If it only mentions 'VeriFactu compliance' without citing the specific regulation, ask for more detail.
Check that it identifies the software and version
The declaration must identify the specific product (name, version) that complies. A generic declaration for 'all our products' without a specific version may not cover the version you're using.
Keep the dated declaration
In case of an inspection, you'll need to prove that at the time you were using the software, you had grounds to consider it compliant. Keep the declaration on paper or PDF with the date you obtained it.
Cofactu has a published responsible declaration
Cofactu certifies that its software meets the technical requirements of RD 1007/2023 and Orden HAC/1177/2024. The declaration is available in the product documentation and can be requested at any time with no extra steps.
Additionally, Cofactu has validated its conformity with real results: the first invoice was accepted by AEAT's official test environment in May 2026, with a confirmation CSV from the tax agency.
You might also be interested in
Frequently asked questions about the responsible declaration
What is the VeriFactu responsible declaration?
Who issues the responsible declaration?
Do I have to request the responsible declaration myself, or does the provider give it to me automatically?
What happens if I use software without a responsible declaration?
Does AEAT approve or certify VeriFactu software?
Does Cofactu have a VeriFactu responsible declaration?
Your invoicing software needs a VeriFactu responsible declaration
Cofactu has it published and available. Start for free and reach the 2027 deadline with total peace of mind.