MD5 hash generator

Type or paste text, or drop a file, and get its MD5 hash (32 hexadecimal characters) instantly, next to the other common hashes. Everything is computed in your browser.

  • Free
  • No sign-up
  • Runs in your browser
md5-generator

100% private — text and files are hashed in your browser and never uploaded.

How it works

Enter your text or file

Type or paste text, or drop a file of up to 500 MB. Nothing is uploaded.

Read the MD5 hash

The hash updates as you type. Choose lowercase or uppercase hexadecimal, or Base64.

Copy or compare

Copy the hash with one click, or paste a known hash in the compare box to check that they match.

How to generate a MD5 hash

To generate a MD5 hash, type or paste your text in the box above, or drop a file on it. The 32-character MD5 checksum appears at once, together with the other common hashes, and you can copy any of them. Everything is computed in your browser, so the text and files you hash are never uploaded. For example, the MD5 of the word hello is 5d41402abc4b2a76b9719d911017c592.

What is MD5?

MD5 (Message-Digest algorithm 5) was designed by Ronald Rivest in 1991 and published as RFC 1321. It reads any input, from one letter to a multi-gigabyte file, and produces a fixed 128-bit fingerprint written as 32 hexadecimal characters. The same input always gives the same MD5, and changing a single character gives a completely different result.

MD5 examples

MD5 of some sample texts
TextMD5 hash
(empty)d41d8cd98f00b204e9800998ecf8427e
hello5d41402abc4b2a76b9719d911017c592
Hello8b1a9953c4611296a827abf8c47804d7
hello world5eb63bbbe01eeed093cb22bb8f5acdc3
UtilsDockedd7693dd71260f861de5c23bad77c40

What MD5 is used for

  • Checking downloads against a published checksum when the risk is a corrupted transfer rather than a malicious file.
  • Finding duplicate files, because two identical files always share an MD5.
  • Cache keys and ETags, where a short, stable fingerprint of some content is all you need.
  • Legacy systems, such as Gravatar image URLs (the MD5 of an email address) and many older APIs.

Limits and security notes

MD5 is broken as a security tool. Researchers found practical collisions in 2004, and today two different files with the same MD5 can be produced in seconds on an ordinary laptop. Do not use MD5 for digital signatures, certificates or password storage. Use SHA-256 when you need integrity, and a deliberately slow password hash such as Argon2, bcrypt or scrypt for passwords.

Private by design

The hash is computed by your own browser with the Web Crypto API (and a built-in routine for MD5, which Web Crypto does not offer). Nothing you type and no file you drop is sent to a server, so it is safe to hash private text and internal files.

Frequently asked questions

Is MD5 encryption?
No. MD5 is a one-way hash function, not encryption. There is nothing to decrypt: the original text cannot be recovered from the hash, although weak or common inputs can be guessed by trying candidates.
Why is my MD5 different from another site's?
Usually because of hidden differences in the input: a trailing newline, spaces, a different text encoding or Windows line endings (CRLF) instead of Unix ones (LF). This tool hashes the text exactly as typed, encoded as UTF-8.
How long is an MD5 hash?
Always 32 hexadecimal characters (128 bits), whatever the size of the input. The empty string, for example, gives d41d8cd98f00b204e9800998ecf8427e.
Are the hashes case sensitive?
The hexadecimal digits a-f and A-F mean the same thing, so a hash in uppercase is equal to the same hash in lowercase. Use the uppercase option only when the system you copy it into expects that format.
Is this converter free?
Yes. There is no sign-up and no limit, and it runs in your browser, so nothing you type is sent to a server.
Does it work on a phone?
Yes. It works in any modern mobile browser, and the result updates as you type.