{"categories":["Banking","Business Operations","Business Setup","Data","Developer","Documents","Ecommerce","Education","Events","Government & Identity","Home & Property","Images","Jobs & Career","Money & Banking","PDF","Personal Finance","Productivity","Security","Security & Privacy","SEO & Marketing","Social Media","Tax & Compliance","Travel","Utilities & Bills","Vehicles","Video & Audio","Website"],"items":[{"category":"Security","intro":"Use this procedure when a software publisher provides a SHA-256 checksum for a specific installer or archive. A match shows that the bytes you checked equal the bytes represented by that reference; it does not prove the reference itself is authentic, that the publisher's account was uncompromised, or that the software is safe. First obtain the expected value from the publisher's authenticated release page or a separately trusted distribution channel. Nirmion Checksum Verifier compares a local file against a supplied digest in the browser; it accepts files up to 100 MB and SHA-256, SHA-384 or SHA-512 values. For larger packages or controlled environments, use the operating system's local hashing command and compare the values yourself.","primary_intent":"Compare the exact software package you downloaded with its publisher's SHA-256 reference, resolve mismatches safely, and record what the check does and does not prove.","slug":"generate-a-sha-256-file-hash","title":"Verify a software download against its published SHA-256","updated_at":"2026-10-05T12:19:10"},{"category":"Security & Privacy","intro":"Use this workflow when you need a reproducible integrity check for a downloaded release, backup, dataset or other file. First establish where the expected digest came from; then compute the same algorithm over the original bytes, compare the complete values and document what was actually verified. A plain checksum comparison can detect a mismatch against a trusted reference, but cannot authenticate a publisher unless the reference itself is authenticated, and it does not determine whether a matching file is safe. Nirmion's Checksum File Generator and Checksum Verifier can help with local digest calculation and comparison; review each tool's current page and limits before relying on it.","primary_intent":"Create a repeatable record of a downloaded file's digest, confirm it against an authenticated expected value and preserve the exact verification result without claiming a checksum proves safety or identity.","slug":"record-and-verify-a-downloaded-files-checksum","title":"Record and verify a downloaded file's checksum","updated_at":"2026-10-07T11:36:05"},{"category":"Security & Privacy","intro":"A matching checksum is meaningful only when the expected checksum comes from a trusted source. For Ubuntu installation media, Canonical publishes a SHA-256 manifest and a detached GPG signature; verify the signing key and manifest first, then compare the downloaded ISO with the signed manifest. This guide covers Ubuntu ISO images, not third-party software or every cloud image format. Nirmion's Hash Verifier can compare a local file with the expected digest in your browser, but it cannot establish that the checksum or signing key is authentic. Never skip the GPG verification step or run/flash an image after a mismatch.","primary_intent":"Help a user verify that a downloaded Ubuntu installation image matches the checksum in an authentic Ubuntu-signed manifest before using it.","slug":"verify-an-ubuntu-iso-with-its-signed-sha256-checksum","title":"Verify an Ubuntu ISO with its signed SHA-256 checksum","updated_at":"2026-10-05T16:00:51"}],"pagination":{"page":1,"page_size":24,"total_items":3,"total_pages":1}}
