Generate SHA-1, SHA-256, SHA-384 and SHA-512 hashes of any text or file instantly, using your browser's native Web Crypto API.
All hashing happens locally in your browser using the Web Crypto API. Your data never leaves your device.
Or drop a file to hash
Any file type · click or drag & drop
Hashing turns any amount of data into a fixed-length digest — a fingerprint of the input. Change even one byte and the digest changes completely, which makes hashes ideal for verifying that data is exactly what it claims to be. The process is one-way: no amount of computing can turn a digest back into the original input.
Yes. As of today, no practical attack has broken SHA-256. It is the NIST-recommended hash for digital signatures, TLS, blockchains and most modern security applications. Only SHA-1 is considered broken for collision resistance and should be avoided for new designs.
This tool reads the entire file into memory, so practical limits depend on your browser's available memory. Files of a few hundred megabytes usually work fine; beyond that you may see slowdowns or failures. For very large files, a streaming hasher is the right tool.
No. Hash functions are one-way by design: from the digest you cannot recover the original input. Any input change — even a single byte — produces a completely different digest, which is what makes hashes useful for verifying integrity.
The Web Crypto API (crypto.subtle) is only exposed in secure contexts: HTTPS or localhost. If you open the page over plain HTTP on another host, the browser hides crypto.subtle and hashing will fail with an error message.
No. The file is read directly from your disk into your browser's memory and hashed there. No data is ever transmitted to any server.
If you just finished with Hash Generator, the natural next steps are Base64 Encoder & Decoder, JWT Decoder, Text Diff, or browse every tool in Privacy File Tools.