Hash Generator

Calculate the MD5, SHA-1, SHA-256, SHA-384 and SHA-512 hash of any text or file at once. Supports HMAC with a secret key and checks a published checksum for you.

🔒 Files and inputs never leave your device

Hashes

About the Hash Generator

A hash function turns data of any size into a fixed-length fingerprint. Change a single character and the hash changes completely, which makes hashes ideal for checksums (verifying that a download matches the original), tamper detection and signing API requests with HMAC.

SHA hashes are computed with your browser’s Web Crypto API and MD5 with a built-in implementation. Large files are read in 4 MB chunks with a progress bar, and nothing is uploaded to a server.

How to use

  1. Type text in the Text tab or pick a file in the File tab. All five hashes are calculated immediately.
  2. If you need a keyed signature (e.g. for an API or webhook), turn on HMAC and enter the secret key.
  3. Choose the output format: lowercase hex, uppercase HEX or Base64.
  4. Paste the checksum from the download page into Hash to compare to see which algorithm it matches.

Hash algorithms: length and use

AlgorithmHex charsSecurityTypical use
MD532Collisions possibleSimple checksums, cache keys
SHA-140Collisions possibleGit object IDs, legacy systems
SHA-25664SecureFile verification, blockchain, JWT
SHA-38496SecureTLS, Subresource Integrity (SRI)
SHA-512128SecureHigh-security signatures

Example: SHA-256("abc") = ba7816bf8f01cfea414140de5dae2223b00361a396177a9cb410ff61f20015ad

Don’t store passwords with a plain hash

MD5 and SHA-256 are very fast, so plainly hashed passwords fall quickly to brute-force attacks. Store passwords with a dedicated, deliberately slow and salted function such as Argon2id, scrypt or bcrypt, as recommended by the OWASP Password Storage Cheat Sheet.

FAQ

Why does another website give a different hash for the same text?

Usually because of encoding or line endings. This tool hashes UTF-8 text; an extra trailing newline or Windows line endings (CRLF) produce a completely different hash.

Can I recover the original text from a hash?

No, hashes are one-way functions and cannot be reversed by calculation. Short or common strings can, however, be looked up in precomputed tables (rainbow tables), which is why plain hashes are unsuitable for passwords.

Does it work with large files?

Yes, up to 1 GB. The file is read in 4 MB chunks with a progress bar; a 100 MB file usually takes only a few seconds. Everything happens on your device.

How is HMAC different from a normal hash?

HMAC mixes a secret key into the calculation, so only someone who knows the key can produce the same value. It is used to sign payments, webhooks and API requests so they can’t be forged (RFC 2104).