Check SHA-256 Hash of Downloaded File
Downloads can be corrupted or tampered with. Verify the SHA-256 hash of any file to confirm it is authentic and unmodified.
Your files are never sent to our serversHow it works
Software distributors often publish SHA-256 hashes alongside their downloads. By comparing the hash of your downloaded file with the published value, you can verify that the file has not been corrupted during transfer or modified by a malicious actor. Our tool calculates hashes entirely in your browser.
When mirrors and third-party sites are involved
Downloading Linux ISOs, open-source software, or large files from mirror sites rather than the original publisher's server is common practice — mirrors occasionally serve outdated, corrupted, or in rare malicious cases tampered files. Checking against the hash published on the official site catches this before you run or install anything.
FAQ
Where do I find the "official" hash to compare against?
Check the publisher's official download page or release notes — reputable software projects list checksums there, not on third-party mirror sites.
What if the hashes don't match?
Don't run or install the file. Re-download from the official source, and if it still doesn't match, treat the file as untrustworthy.