Drop any file to compute its SHA-1, SHA-256, SHA-384 or SHA-512 checksum instantly. The file is read with the browser File API and never uploaded, so you can verify a download or an ISO safely.
You cannot recover the original input from a hash.
bcrypt or argon2 for passwords; SHA-256 for integrity.
Compare digests for integrity; prefer slow algorithms for secrets.
Drop any file to compute its SHA-1, SHA-256, SHA-384 or SHA-512 checksum instantly. The file is read with the browser File API and never uploaded, so you can verify a download or an ISO safely.
Drag a file onto the drop zone or click to browse. Everything is processed locally.
All four digests are computed in one pass and shown side by side.
Match the value against the one published by the vendor to confirm integrity.
| Algorithm | Output length |
|---|---|
| SHA-1 | 40 hex chars |
| SHA-256 | 64 hex chars |
| SHA-512 | 128 hex chars |
Two files differing by a single byte produce completely different checksums.
It is completely free, private and requires no signup.
Use the tool nowNo. The file is read in memory by your browser and hashed locally. Nothing is sent to any server.
SHA-256 is the common default. SHA-512 is fine too. Avoid MD5 and SHA-1 for security purposes — they are broken for signatures.
A checksum proves the file was not corrupted or tampered with in transit. If it matches the official value, the download is intact.
The browser crypto API does not expose MD5. Use the dedicated MD5 generator for non-security checksums.
Explore the whole collection — no signup, 100% free & private.