Cryptographic verification
Verify the integrity of any IIC v9.0 file
Drop the Complete Package ZIP, any of the five official PDFs, or either defensive publication to verify, in your browser, that the file matches the version published by Https Card — Internet Identity Card Ltd. Verification runs entirely on your device using the W3C Web Crypto API. Nothing is uploaded.
Verify in your browser
Drop one of the eight official IIC v9.0 release files below. Verification runs entirely on your device — nothing is uploaded.
Accepted files: IIC-v9_0-Complete-Package.zip,
IIC-User-Guide-v9.0.pdf,
IIC-Wallet-User-Guide-v1.0.pdf,
IIC-Technical-Specification-v9.0.pdf,
IIC-Engineering-Specification-v9.0.pdf,
IIC-Threat-Model-v9.0.pdf,
IIC-Defensive-Publication-MultiZone-v2.pdf,
IIC-Defensive-Publication-StapledFreshness.pdf
Published release manifest
These are the cryptographic fingerprints of the current IIC v9.0 release. Compare locally-computed hashes against these values.
1. Complete Package (ZIP)
File
IIC-v9_0-Complete-Package.zip
Size
222,563 bytes
Algorithm
SHA-256
7b2dcffde07a29975097cff3d0246ea460762630dd8037798f7644e063818afd
2. User Guide
File
IIC-User-Guide-v9.0.pdf
Size
8,714 bytes
Algorithm
SHA-256
7b8655adad980da539e59227d3d82bf250eba69b1c33994f1e02bd406f1aa382
3. Wallet User Guide
File
IIC-Wallet-User-Guide-v1.0.pdf
Size
28,055 bytes
Algorithm
SHA-256
34002ce3a519286212cf4d9967414bdb6defbd993671ccde13313bd64cc57697
4. Technical Specification
File
IIC-Technical-Specification-v9.0.pdf
Size
9,880 bytes
Algorithm
SHA-256
1095a671bb2bf7eba4fd16167d91e445d268d3e6f51c52255b206b50d4edc7cf
5. Engineering Specification
File
IIC-Engineering-Specification-v9.0.pdf
Size
9,144 bytes
Algorithm
SHA-256
f7435515d8ec7429d1ff2d268da60cfa7276bd883ef2c5cb2fdccbd47731b9e7
6. Threat Model
File
IIC-Threat-Model-v9.0.pdf
Size
12,164 bytes
Algorithm
SHA-256
f692768adc79c9d25ab903b5b042efa29b7434802d42114d772ef757284a819a
7. Defensive Publication — Multi-Zone Canonical Neutralization (v2)
File
IIC-Defensive-Publication-MultiZone-v2.pdf
Size
15,770 bytes
Algorithm
SHA-256
1bd43a9ae765eba9e36ca39ed890e2946931ac1a61b9ae351b983595b02ba103
8. Defensive Publication — In-File Stapled Freshness
File
IIC-Defensive-Publication-StapledFreshness.pdf
Size
16,936 bytes
Algorithm
SHA-256
ac311f338e89adb1061b44e6bd65cf03952123b1aeaa07164ea1c6ae4d3ff902
Files inside the Complete Package are individually listed in its SHA256SUMS.txt; the generator file is internet-identity-card-v9.html, SHA-256 17aea67549cdf0214c04e9c89b0849efe08e74d3632efe2bc78d32fbe93f5bfc.
ECDSA P-256 public key (Base64-encoded)
Used to verify the ECDSA signature of the Complete Package ZIP.
BGZKvQvTKYT9R5qyB+O9fwIexvOBp9rogUgFFKAwHIrxR61DLjoYoGMt1BuGPYnawKmpsSwxoevMruLJ6qOZoIo=
Verify from your terminal
Prefer the command line? Compute the SHA-256 of the file you downloaded and compare with the published hash above.
macOS / Linux
shasum -a 256 IIC-v9_0-Complete-Package.zip
shasum -a 256 IIC-User-Guide-v9.0.pdf
shasum -a 256 IIC-Wallet-User-Guide-v1.0.pdf
shasum -a 256 IIC-Technical-Specification-v9.0.pdf
shasum -a 256 IIC-Engineering-Specification-v9.0.pdf
shasum -a 256 IIC-Threat-Model-v9.0.pdf
shasum -a 256 IIC-Defensive-Publication-MultiZone-v2.pdf
shasum -a 256 IIC-Defensive-Publication-StapledFreshness.pdf
Windows (PowerShell)
Get-FileHash IIC-v9_0-Complete-Package.zip -Algorithm SHA256
Get-FileHash IIC-User-Guide-v9.0.pdf -Algorithm SHA256
Get-FileHash IIC-Wallet-User-Guide-v1.0.pdf -Algorithm SHA256
Get-FileHash IIC-Technical-Specification-v9.0.pdf -Algorithm SHA256
Get-FileHash IIC-Engineering-Specification-v9.0.pdf -Algorithm SHA256
Get-FileHash IIC-Threat-Model-v9.0.pdf -Algorithm SHA256
Get-FileHash IIC-Defensive-Publication-MultiZone-v2.pdf -Algorithm SHA256
Get-FileHash IIC-Defensive-Publication-StapledFreshness.pdf -Algorithm SHA256
If the computed hash exactly matches the published value above, the file is bit-for-bit identical to the published release (integrity verified).
What this verification provides
A successful match between your locally-computed SHA-256 hash and the published value provides:
- Integrity — the file is bit-for-bit identical to the published release
- Tamper detection — any modification to the file (even a single bit) would change the SHA-256 hash entirely
- Source consistency — the file you have is the same one published by Https Card — Internet Identity Card Ltd
For the Complete Package ZIP, an additional ECDSA P-256 signature can be verified against the published public key. The signature provides cryptographic evidence that the release was issued by the holder of the corresponding private key, assuming the public key has been obtained from a trusted source.
Independent timestamping (BTC + ETH) — anchor timeline
Every release is anchored on the Bitcoin and Ethereum blockchains via OriginStamp, and additionally on Bitcoin via OpenTimestamps. Anchors are cumulative: superseding a release never removes the proof that its predecessor existed. The complete chronology:
13 May 2019
Historic Bitcoin anchor — Decentralized IIC (IPFS)
The project’s first blockchain timestamp, establishing anchoring practice seven years before the current release cycle. The card was published on IPFS and its SHA-256 fingerprint (
ED70CEF5…D53C7FB) timestamped via OriginStamp in
Bitcoin block 575,758 (13 May 2019, 00:13:27 UTC). The card is still retrievable on IPFS today:
view the 2019 card ·
company history.
21–22 May 2026
v8.4.1 documentation bundle Superseded
User Guide, Technical Specification & Engineering Specification (3 PDFs, one anchor) ·
Bitcoin ·
Ethereum
7 June 2026
Wallet User Guide v1.0 · Current
Unchanged in v9.0 — this anchor remains the current proof ·
Bitcoin ·
Ethereum
17 June 2026
Complete Package v8.4.1 Superseded
Generator + Wallet + documentation ·
Bitcoin ·
Ethereum
18–19 June 2026
Threat Model v8.4.1 Superseded
3 July 2026
v9.0 release batch — 7 fingerprints, one anchor per chain
User Guide, Technical Specification, Engineering Specification & Threat Model v9.0, the two new defensive publications, and the initial v9.0 package build ·
Bitcoin ·
Ethereum · plus per-file OpenTimestamps proofs. The initial package build (
dc081d5e…5395b710) was superseded the following day; its anchor remains permanent historical evidence.
4–5 July 2026
Complete Package v9.0 — current build · Current
SHA-256
7b2dcffde07a29975097cff3d0246ea460762630dd8037798f7644e063818afdBitcoin (5 Jul, 02:15:20 UTC) ·
Ethereum (4 Jul, 08:06:47 PM UTC)
Defensive publications
The cryptographic architecture verified here is disclosed as open prior art on Technical Disclosure Commons, released under the Creative Commons Attribution 4.0 license:
- TDCommons #10079 — Cryptographic Identity Document System Using TOTP-Derived Symmetric Keys (12 May 2026)
- TDCommons #10167 — Self-Verifying Single-File Cryptographic Documents with Dual-Passphrase Architecture (19 May 2026)
- TDCommons #10394 — Composite Defense-in-Depth Architecture for Self-Verifying Cryptographic Documents and Their Optional Offline Launchers (7 June 2026)
- TDCommons #10795 — Multi-Zone Canonical Neutralization (v2), anchored BTC + ETH 3 July 2026
- TDCommons #10796 — In-File Stapled Freshness (Zone F), anchored BTC + ETH 3 July 2026
Important notice
This verification confirms file integrity only. It does not constitute legal recognition, certification, accreditation, or endorsement by any authority. Internet Identity Card ™ is a private software-based identity and verification platform developed by Https Card — Internet Identity Card Ltd. References to electronic signatures, eIDAS, or regulatory frameworks are informational only.
Page integrity
In addition to file verification, you can verify the SHA-256 integrity of every HTML page on this site in real time — directly in your browser, using the W3C Web Crypto API. Nothing is uploaded.
View page integrity →