POSTorigin reachablediscovery only

Hashing, HMAC & Checksum Suite /hash APIPOST /hash · x402 API by Hashing, HMAC & Checksum Suite

Give this API any text or binary data and it instantly returns its fingerprint under whichever hash algorithms you choose — SHA-256, SHA-512, MD5, BLAKE2, CRC32, and more. It also signs data with a secret key (HMAC) and, most importantly, safely verifies whether an incoming signature matches — using a timing-safe comparison that prevents secret-leaking attacks. Language models cannot perform hashing: they produce a string of the right length and character set that looks correct but is simply wrong. Every webhook verification, idempotency key, cache fingerprint, or integrity check that relies on a hallucinated hash is silently broken. This API is the cure.

https://hash-hmac.underscoredone.com/hash

What does this x402 API do?

Hashing, HMAC & Checksum Suite /hash API. This is an x402-gated POST API resource from Hashing, HMAC & Checksum Suite. TOLL·402 did not invoke this route automatically because doing so was not considered safe. No normalized USD price is recorded; the listing names Base and Solana. No settled paid call has been verified.

Published price
No normalized USD price is recorded
Networks
Base · Solana
Latest evidence
TOLL·402 did not invoke this route automatically because doing so was not considered safe
Resource ID
9da3ead674c0e0ce11728319
USE THIS RESOURCE

Start with a quote-only recipe. Payment signing stays in your project.

CODE
AI CODING TOOLS
quote-check.ts
const response = await fetch("https://hash-hmac.underscoredone.com/hash", {
  method: "POST",
  headers: { "content-type": "application/json" },
  body: JSON.stringify({
  "type": "http",
  "method": "POST",
  "bodyType": "json",
  "bodyFieldNames": [
    "algorithms",
    "hmac",
    "input",
    "input_encoding",
    "output_encoding"
  ],
  "pathParamNames": [],
  "queryParamNames": []
}),
});

console.log(response.status);
console.log(Object.fromEntries(response.headers));
console.log((await response.text()).slice(0, 1000));

// A valid 402 is a quote, not a completed paid call.

Review the provider input schema before running this non-read-only method. No payment code is included.

STATUS HISTORY

  1. Exact route checked

    not safely testable · potentially-mutating-method:POST

  2. Origin reachable

    HEAD https://hash-hmac.underscoredone.com/ returned 301.

  3. Observed in cdp-bazaar

    The registry record was observed and retained with provenance.

What evidence supports this listing?

cdp-bazaarobserved 2026-08-11 · open source record ↗
origin checkHEAD https://hash-hmac.underscoredone.com/ → 301 on 2026-08-15
route quotenot invoked automatically · potentially-mutating-method:POST · 2026-08-15

Each record has an exact-route quote outcome. Unresolved templates and potentially mutating methods are labeled instead of being invoked without provider-specific test input. A quote is still separate from a settled paid call. Read the discovery and verification methodology →

Which networks and payment options does it accept?

The normalized listing price is No normalized USD price is recorded. Raw protocol requirements remain visible below for implementation and audit use.

Baseexact10000 atomic · 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913
Solanaexact10000 atomic · EPjFWdd5AufqSSqeM2qN1xzybapC8G4wEGGkZwyTDt1v
Hashing, HMAC & Checksum Suite POST /hash · 9da3ea x402 API · TOLL·402