๐๏ธ File Hash Checker
Drag and drop a file, or click to select one
Select a file to see its hash
* Your file is processed entirely in your browser and never sent anywhere.
Calculate a hash (SHA-1, SHA-256, SHA-384, or SHA-512) for a local file. Compare it against the hash published by the file's source to verify a download hasn't been corrupted or tampered with. Your file is processed entirely in your browser and never sent anywhere.
How to use
- Drag and drop the file you want to check, or click to select it.
- Choose a hash algorithm (SHA-1, SHA-256, SHA-384, or SHA-512).
- Paste the expected hash published by the source into the "Expected hash" field to automatically check whether it matches.
How the calculation works
A hash is a fixed-length value calculated from a file's contents. Change a single bit and you get a completely different value, which is why hashes are used to confirm a downloaded file is identical to the one the publisher distributed. This tool reads the file you choose inside the browser and computes SHA-1, SHA-256, SHA-384 and SHA-512 with the standard Web Crypto API. The file is never sent to a server. If the value matches one published on the distributor's website (for example "SHA-256: 3a7bd3e2โฆ"), the file was not corrupted in transit or swapped along the way. Upper- and lowercase letters in the hash can be treated as the same.
Worked example
Checking an operating system installation image 1. Find the SHA-256 value published on the distributor's site 2. Open the downloaded file in this tool 3. Compare the SHA-256 shown with the published value If all 64 characters match, the file downloaded correctly. If even one differs, the file is damaged or not the same file.
Things to be aware of
- Comparing hashes is only meaningful if the reference value comes from a trustworthy source, such as the publisher's official site.
- Collision attacks exist against SHA-1; use SHA-256 or stronger to detect tampering.
- MD5 is not available because the browser's Web Crypto API does not support it.
- Very large files may fail to load on devices with limited memory.
FAQ
Is my file uploaded to a server?
No โ the hash is calculated entirely in your browser using the Web Crypto API; the file's contents are never sent anywhere.
Does this support MD5?
No โ since the browser's standard Web Crypto API doesn't support MD5, this tool only supports SHA-1, SHA-256, SHA-384, and SHA-512.
Can this handle very large files?
Yes, though very large files (multi-gigabyte) will use more browser memory and take longer to process.