SHA Hash Generator

Get the SHA-1, SHA-256, SHA-384 and SHA-512 digest of any text in a single pass — computed in your browser.

How to generate a SHA hash

  1. Type or paste the text you want to hash. Include or exclude the trailing newline — it changes the result.
  2. Press Generate hashes.
  3. All four digests come back at once, labelled, so you can copy just the one you need.

The calculation uses the browser's own Web Crypto implementation, which is the same code that secures HTTPS connections. Nothing is sent anywhere — the hashing happens in the tab.

What hashes are for

A cryptographic hash takes any input and produces a fixed-length fingerprint. Feed in a single character or a whole book and you get back the same number of bits either way. The result is deterministic, so the same input always yields the same output; it is effectively impossible to find two different inputs with the same digest; and the function cannot be run backwards, so the digest does not reveal the input.

Those three properties are what make hashes useful. A publisher lists the SHA-256 of a download so you can confirm the file arrived intact and unmodified — one changed byte produces a completely different digest. A build system hashes its inputs so it can skip work that has not changed. An API signs a request body so the server can verify nothing was altered in transit.

Which algorithm you want depends on the job. SHA-1 produces a 160-bit digest and is no longer considered safe for signatures or anything adversarial, though you will still meet it in older checksum files and Git object identifiers. SHA-256, at 256 bits, is the sensible default for integrity checks today. SHA-384 and SHA-512 offer longer digests for the rare cases where that margin is worth the extra bytes. If you are storing passwords, none of these is the right tool: use a deliberately slow, salted algorithm such as bcrypt, scrypt or Argon2, which are designed to make bulk guessing expensive rather than fast.

Hash generator FAQ

Is it safe to hash a password here?

Nothing is transmitted, so the text never leaves your device. Keep in mind that a plain SHA hash is not how passwords should be stored — use bcrypt, scrypt or Argon2, which are deliberately slow and salted.

What is the difference between SHA-1, SHA-256 and SHA-512?

They belong to the same family but differ in output length and security margin. SHA-1 gives 160 bits and is broken for signatures. SHA-256 and SHA-512 are both appropriate for checksums, integrity checks and key derivation.

Does the same input always give the same hash?

Yes — a hash is deterministic. Identical input always produces an identical digest, and changing a single character, even a trailing space, produces a completely different one.

Can a hash be reversed?

No. A hash is one-way. You cannot recover the input from the digest; you can only test candidate inputs to see whether they produce the same value.

Related tools