Hash Generator
Generate MD5, SHA-1, SHA-256, SHA-384 and SHA-512 hashes of text and files.
Nothing you enter here is uploaded or remembered, and the secret key is never saved.
Runs in your browser. Nothing is uploaded.
What is Hash Generator?
A hash function turns any amount of data into a short, fixed-length fingerprint. The same input always gives the same hash, a tiny change gives a completely different one, and you cannot work backwards from the hash to the original data. That makes hashes useful for checking that a download is intact, spotting duplicate files, building cache keys, comparing values without storing them and signing messages.
This hash generator computes MD5, SHA-1, SHA-256, SHA-384 and SHA-512 at the same time, for text or for any file you choose. Text is hashed as UTF-8, so accented letters, emoji and other scripts give the same result as command-line tools such as sha256sum. You can show the result in lowercase or uppercase hex or in Base64, hash every line of a list separately, compute a keyed HMAC for debugging API signatures, and paste a known checksum to see whether it matches.
Everything is computed in your browser. Files are read on your device and never uploaded, and the text, the file and the secret key are not stored. A note points out that MD5 and SHA-1 are broken for security purposes: they are fine for checksums and cache keys, but you should never use them for passwords or signatures. For storing passwords use a slow, salted algorithm such as bcrypt, scrypt or Argon2 instead of a plain hash.
How to use
- Type or paste your text, or open the File tab and choose a file.
- Tick the algorithms you want. Every selected hash appears in its own card with a Copy button.
- Choose the output format: lowercase hex, uppercase hex or Base64.
- Tick HMAC and enter a key to compute a keyed hash, or tick Hash each line separately for a list.
- Paste a checksum into the verify box to see whether it matches one of the results.
Example
Input
hello world
Output
MD5: 5eb63bbbe01eeed093cb22bb8f5acdc3 SHA-256: b94d27b9934d3e08a52e52d7da7dabfac484efe37a5380ee9088f7ace2efcde9
Frequently asked questions
- Which hash algorithm should I use?
- Use SHA-256 for checksums and general-purpose hashing. MD5 and SHA-1 are broken against deliberate collisions, so use them only to catch accidental corruption. Never store passwords with any of these plain hashes.
- Why does my hash differ from another tool?
- The usual causes are different text encoding, a trailing newline or space, or different line endings. This tool hashes the exact characters you enter as UTF-8, so a trailing newline changes the result.
- What is an HMAC?
- An HMAC is a hash computed together with a secret key. It proves that a message came from someone who knows the key and was not changed, and it is used to sign API requests and webhooks.
- Are my files uploaded?
- No. Files are read and hashed on your device in a background worker, and nothing is sent to a server. Files up to 200 MB are supported.
Related tools
- Base64 Encode / DecodeBase64 encode and decode text with full UTF-8 and URL-safe support.
- JWT DecoderDecode a JWT and inspect its header, payload and expiry in your browser.
- UUID GeneratorGenerate UUID v4 and v7 in bulk, and validate any UUID.
- URL Encode / DecodePercent-encode and decode text and URLs, and break a URL into its parts.