HMAC Generator API

POST

Sign payloads and verify webhooks with standard HMAC hashes.

HMAC Generator creates Hash-based Message Authentication Codes for data integrity and authentication. Supports SHA-256, SHA-384, SHA-512, SHA-1, and MD5 algorithms.

Try it — live request, no key required

Request
POSTapi.apiverve.com/v1/hmac
Body
Verification
Format

No key required to try it. Get a key to use it in your app.

Example
{
  "status": "ok",
  "error": null,
  "data": {
    "hmac": "2cd7c25025198d4458002ceb064ad37ccfbbe46650876d693f5e080bd954e449",
    "algorithm": "sha256",
    "encoding": "hex"
  }
}

About the HMAC Generator API

Returns the HMAC signature in hex or base64 encoding. Use for signing API requests, validating webhooks, or any scenario requiring message authentication.

What people use it for

API Authentication
Sign API requests to prove authenticity
Webhook Verification
Validate incoming webhooks from services like Stripe, GitHub
Data Integrity
Ensure messages haven't been tampered with
JWT Signing
Generate signatures for JSON Web Tokens

Ways to call it

One endpoint, many ways in — REST with JSON, XML, YAML and CSV, plus GraphQL and an MCP interface for AI agents.

JSON
Default REST response
XML
Markup format
YAML
Human-readable
CSV
Tabular export
Beta
GraphQL
Query language
New
MCP
For AI agents

Other ways to use HMAC Generator

Same data, same APIVerve account, same credit balance — one key works on all of them.

Questions.

Common questions about the HMAC Generator API.

Read the docs →
Which hashing algorithms can I use to generate signatures?
You can generate signatures using SHA-256, SHA-384, SHA-512, SHA-1, and MD5. This allows you to match the exact algorithm required by your webhook receiver, API provider, or legacy service.
Which output encoding formats are supported?
The API supports both hex and base64 output formats. Specify the encoding you need in your request to receive the signature formatted for your authorization headers or verification checks.
Can I use this to sign webhook payloads and JWTs?
Yes. HMAC Generator is designed for API authentication, webhook signature generation, data integrity verification, and JWT signing workflows.
Can I pass structured payloads like JSON strings into the message?
Yes. Any string data can be passed as the message, including serialized JSON payloads, raw URL query strings, and custom tokens.
How many signatures does the Free plan cover?
The Free plan includes 200 monthly credits, which covers 100 signatures at 2 credits per call. For higher volumes, the Starter plan covers up to 100,000 signatures per month, which works out to about $0.30 per 1,000 calls.

Ready to build with HMAC Generator? Start with 200 free credits — one key unlocks all 300+ APIs.

Explore the catalog

300+ APIs on the same key and the same response shape.

Browse all APIs