Hash Generator
Calculate SHA-256, SHA-384 and SHA-512 hashes of text or files in your browser, and compare against an expected checksum.
Processed locally in your browser. Your text is not uploaded.
What this tool does
Compute SHA-256, SHA-384 and SHA-512 digests of any text or file and see all three at once, as hexadecimal or Base64. It is the quickest way to verify that a downloaded installer or ISO matches the checksum published by its vendor, to fingerprint a file, or to check what a string hashes to.
Paste the checksum you expect into the comparison box. The tool normalises case, spaces and colons, accepts hex or Base64, and tells you whether it matches one of the computed hashes, with the comparison done in constant time.
Hashing uses your browser's built-in Web Crypto API. Files are read from your disk into memory and hashed locally; they are never uploaded. Text is hashed as UTF-8.
How to use it
- 1Choose Text or File.
- 2Type your text, or drop a file / choose one from your device.
- 3Read the SHA-256, SHA-384 and SHA-512 results; switch between Hex and Base64 and copy the one you need.
- 4Optionally paste an expected hash into “Compare with expected hash” to check for a match.
Supported formats
Any text (hashed as UTF-8) or any file type. Output as hexadecimal (lower or upper case) or Base64.
Privacy
This tool runs in your browser. The data you provide is processed on your device and is not sent to our servers.
Limitations
- The whole file is loaded into memory before hashing, so very large files may fail on low-memory devices. The size limit is shown in the drop area.
- Only SHA-2 family hashes (SHA-256, SHA-384, SHA-512) are offered. MD5 and SHA-1 are not provided because they are broken for security uses.
- Hash functions do not protect passwords. Use a slow, salted password-hashing function (such as Argon2, scrypt or bcrypt) for that.
- A matching hash only proves the file equals what the checksum was computed from. It is only as trustworthy as the place you got the expected checksum from.
- Web Crypto requires a secure context (HTTPS or localhost) in browsers.
FAQ
Is my file uploaded to calculate the hash?
No. The file is read by your browser and hashed on your device. It never leaves it.
Which hash should I check a download against?
Whichever the publisher gives you. If they list several, SHA-256 is the most common. A match on any of them means the file is identical to the one they hashed.
Why is my text hash different from another tool?
Hashes change with any difference in the input: trailing newline, line endings (CRLF vs LF), different character encoding or invisible whitespace. This tool hashes the exact UTF-8 bytes of the text box.
Can I reverse a hash to get the original data?
No. Hashes are one-way. Short or common inputs can be guessed by trying candidates, which is why unsalted hashes are not suitable for passwords.
Related tools
UUID Generator
Generate random UUID v4 or time-ordered UUID v7 in bulk (up to 1,000). Copy all or download a .txt file. Runs in your browser.
Base64 Encoder
Encode text to Base64 with full UTF-8 support, optional URL-safe alphabet and padding control. Runs in your browser.
JSON Formatter
Format, beautify and sort JSON with syntax highlighting. Pinpoints errors by line and column. Runs locally in your browser.
JSON Validator
Check whether JSON is valid and see the exact line and column of the first error, with a caret under the problem character.