Computes an HMAC (SHA-256, SHA-384, or SHA-512) of a text message or local file using exclusively the browser's crypto.subtle — never a manual implementation or a plain hash presented as HMAC. Accepts the secret in text, hexadecimal, Base64, or Base64URL, shows the result in hex/Base64/Base64URL, and verifies an existing signature with a resistant comparison. The secret is never shown by default, never included in downloaded reports, and never logged.
The message, secret, and result stay on your device.
or use a local file
The data is processed on your device and is never sent to the server.