SafeBind.ai
Runs in your browser — nothing uploaded

Check a record.

Drop in a SafeBind export bundle and check its signature, fingerprints, and trusted timestamp yourself — the math runs entirely on your device, against the public key. No account, and nothing you paste is ever uploaded.

📄

Drop a record export (.json)

or choose a file, or paste the bundle below

Private: the bundle never leaves this page — verification is pure client-side WebCrypto.

Have a single file from The Evidence? Check it by hand.

What this checks

The same six checks, run by you.

Every check runs in your browser — no trust required.

🔑

Signature

Verifies the ES256 signature over the Merkle root of The Evidence — using the key from our published JWKS, not the copy inside the file.

🪪

Our key

Matches the signing kid against SafeBind’s published keys. Without this, a file signed by anyone at all would still look valid.

🔒

Unaltered

Re-hashes each field of The Evidence (SHA-256) and rebuilds the Merkle root — any change breaks it.

📄

Referenced docs

Confirms the referenced T&C / privacy documents are committed inside The Evidence.

⏱️

Timestamp

Verifies the timestamp authority's own signature over its RFC-3161 token, that its certificate chains to the pinned DigiCert root, and that it stamped this exact signature — binding it to a time.

🧾

Who it’s for

Checks the receipt naming who this copy was provided to.