home / tools
tools
sixteen utilities that come up again and again in this scene - one tool per page, no clutter. every single one runs entirely in your browser: keys, messages, files and passphrases never leave your machine. no uploads, no logs, no server-side crypto.
view-source friendly: the code doing the work is plain javascript you can read before using anything.
pgp
key generator ›
create an openpgp key pair (curve25519 or rsa-4096) with passphrase-suggester, armored keys and fingerprint.
encrypt ›
scramble a message for one specific person - whoever owns the public key you paste. optionally signed.
decrypt ›
unlock a message that was encrypted to you. needs your private key and its passphrase.
sign ›
stamp a message with your private key so anyone can prove it came from you, unmodified.
verify ›
the vendor-message check: paste what they sent plus their public key - get a clear valid / invalid verdict.
armor cleaner ›
fix pgp blocks mangled by chat apps: restored newlines, proper 64-char wrapping, full repair report.
fingerprint comparator ›
paste two keys or fingerprints - instantly see if they are the same key or a scammer's lookalike.
tor & coins
onion status checker ›
is that .onion actually up? we probe it through our own tor connection and tell you - any address, live.
vanity onion ›
mine a v3 address containing letters you choose - honest odds shown up front, thousands of tries per second, all local.
bitcoin validator ›
validate legacy, segwit and taproot addresses - checksum, network and type decoded in your browser.
monero validator ›
check standard, integrated and subaddresses - keccak checksum verified locally, payment ids extracted.
everyday security
passphrase generator ›
memorable word-based passphrases from crypto-grade randomness, with an honest entropy readout.
sha-256 checksum ›
hash text or local files to verify downloads like the tor browser or tails before trusting them.
text diff ›
compare two texts line by line - spot changes between signed messages, mirror pages or pgp notes.
base converter ›
text ↔ base64 / hex / base32 / url - the conversions that come up around armor, hashes and links.
why client-side matters
any tool that processes your data on a server could, in theory, keep a copy of your private key or your plaintext. ours can't - there is no backend involved. load the page once (or even offline afterwards), hit f12, watch the network tab stay silent when you click a button.