utilpeek (Tanod) HMAC
utilpeek (Tanod) HMAC: sign a message or verify a webhook signature (sha256, sha512 or sha1).
Answeringour last check, 2026-10-10
1 of 1checks answered this week
219 msmedian answer time
$0.001listed price per call
$0.001price it asked us
Paid test badge: not yet. The checks above are free: we call the tool without paying and read the payment request it sends back. The Verified badge needs paid calls whose answers match the promised output, and nobody can buy a badge.
Endpoint
POST https://tanod.dev/v1/hmac
| Category | Everything else |
|---|---|
| Provider host | tanod.dev |
| Networks | eip155:137, eip155:8453 |
| Payment schemes | exact |
| Self-reported calls, 30 days | 2 from 2 payers (the provider's figure, not ours) |
Our checks, last 30 days
| Day | Result | HTTP | Asked | Time |
|---|---|---|---|---|
| 2026-10-10 | valid payment request | 402 | $0.001 | 219 ms |
Example input (from the provider)
{
"body": {
"algorithm": "sha256",
"key": "It's a Secret to Everybody",
"message": "Hello, World!",
"mode": "sign"
},
"bodyType": "json",
"method": "POST",
"type": "http"
}
Promised output schema (from the provider)
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"properties": {
"input": {
"additionalProperties": false,
"properties": {
"body": {
"additionalProperties": false,
"properties": {
"algorithm": {
"default": "sha256",
"description": "sha256 (default), sha512, or sha1 (legacy webhooks only).",
"enum": [
"sha256",
"sha512",
"sha1"
],
"type": "string"
},
"key": {
"description": "The shared secret (at most 1 KiB), read as `key_encoding`. Never echoed or logged.",
"maxLength": 1024,
"minLength": 1,
"type": "string"
},
"key_encoding": {
"default": "utf8",
"description": "utf8 (default), hex or base64 (standard alphabet).",
"enum": [
"utf8",
"hex",
"base64"
],
"type": "string"
},
"message": {
"description": "The signed payload exactly as received (e.g. the raw webhook body), as text; at most 64 KiB as UTF-8.",
"maxLength": 65536,
"type": "string"
},
"mode": {
"description": "sign (compute the HMAC) or verify (check `signature`).",
"enum": [
"sign",
"verify"
],
"type": "string"
},
"output": {
"default": "hex",
"description": "Signature encoding: hex (default) or base64.",
"enum": [
"hex",
"base64"
],
"type": "string"
},
"signature": {
"anyOf": [
{
"maxLength": 256,
"minLength": 1,
"type": "string"
},
{
"type": "null"
}
],
"default": null,
"description": "verify only: the signature to check, in `output` encoding. A `sha256=` style prefix (GitHub's X-Hub-Signature-256) is stripped when it names `algorithm`."
}
},
"required": [
"mode",
"message",
"key"
],
"type": "object"
},
"bodyType": {
"enum": [
"json",
"form-data",
"text"
],
"type": "string"
},
"method": {
"enum": [
"POST"
],
"type": "string"
},
"type": {
"const": "http",
"type": "string"
}
},
"required": [
"type",
"method",
"bodyType",
"body"
],
"type": "object"
},
"output": {
"properties": {
"example": {
"properties": {
"algorithm": {
"enum": [
"sha256",
"sha512",
"sha1"
],
"type": "string"
},
"output": {
"enum": [
"hex",
"base64"
],
"type": "string"
},
"signature": {
"type": "string"
},
"valid": {
"type": "boolean"
}
},
"required": [
"algorithm"
],
"type": "object"
},
"type": {
"type": "string"
}
},
"required": [
"type"
],
"type": "object"
}
},
"required": [
"input"
],
"type": "object"
}