Free tool — No signup required
Verify the integrity of a PrivacyCache Deal Pack — drag & drop your ZIP file to check all SHA-256 hashes
Your files are verified locally in your browser. Nothing is uploaded to any server.
Drag & drop your Deal Pack ZIP here
or click to browse — accepts .zip, .json, or .txt manifest files
How it works
Every PrivacyCache Deal Pack includes a hash manifest — a list of every file and its SHA-256 fingerprint. This tool lets you verify that nothing was altered after the Deal Pack was generated.
1
Drop your ZIP
Drag & drop the Deal Pack ZIP file onto the verification area above, or click to browse.
2
Local verification
Your browser reads the manifest and computes SHA-256 hashes for every file. Nothing leaves your device.
3
Instant results
See which files are verified, which have mismatches, and which are missing — all in seconds.
FAQ
SHA-256 is a cryptographic hash function that generates a unique 256-bit (64-character) fingerprint for any file. Even a single-byte change produces a completely different hash, making it ideal for detecting file tampering.
Hash verification proves that your compliance evidence has not been altered since the Deal Pack was generated. This is critical for audits — it provides cryptographic proof that evidence files are authentic and unmodified.
No. All verification happens locally in your browser using the Web Crypto API. Your files never leave your device. We cannot see, access, or store any of your data.
A mismatch means the file's current SHA-256 hash does not match the hash recorded in the manifest at the time of Deal Pack generation. This could indicate the file was modified, corrupted, or replaced after the Deal Pack was created.
This tool is designed for PrivacyCache Deal Packs that contain a HASH-MANIFEST.json or HASH-MANIFEST.txt file. However, any ZIP file with a compatible hash manifest format will work.
More free tools
PrivacyCache generates tamper-proof Deal Packs with SHA-256 hashed evidence — auditor-ready from day one.
Start with PrivacyCache