How ProofIt Technology Works

    Explore hashing, trusted timestamp sources, blockchain anchoring, certificate fields, and independent verification—described in system-specific terms, not generic marketing claims.

    SHA-256 file hashing

    ProofIt creates a SHA-256 fingerprint of your file content. That hash identifies the bytes of the file without exposing the original content to the blockchain or timestamp provider. A separate composite hash may also bind certificate identity and storage metadata for on-chain registration.

    RFC 3161 trusted timestamps

    Where enabled, ProofIt submits only the content hash to a Trusted Timestamp Authority (Sectigo) using the RFC 3161 protocol. The TSA returns a digitally signed timestamp token proving the hash existed at a specific UTC time. Original files are never sent to the TSA.

    Ethereum blockchain anchoring

    ProofIt records the relevant hash and certificate metadata on Ethereum through its certificate registry service. Once written, that blockchain record is tamper-evident and is not deleted or reversed if a ProofIt subscription is cancelled.

    Certificate fields

    A ProofIt certificate typically includes a certificate ID, SHA-256 hash, Ethereum transaction reference, RFC 3161 trusted timestamp and provider name where applicable, and a QR verification link. These fields support later verification of existence, time, and integrity.

    Independent verification

    Public verification lets a third party check a certificate ID against ProofIt’s verify flow and, where available, blockchain and TSA evidence. A valid record helps demonstrate that specific content existed in a particular form at a particular time. It does not automatically establish legal ownership or guarantee court acceptance.

    Privacy-first design

    Only hashes and verification metadata are shared with external timestamping and blockchain systems. Original files remain under ProofIt’s hosting and access controls according to your account and retention policy.

    What this technology does not prove

    Cryptographic hashing, trusted timestamps, and blockchain records create evidence of existence, time, and integrity. They do not by themselves create copyright ownership, guarantee platform takedown outcomes, or guarantee acceptance by any court or authority.

    Operated by Global Kingdom International Company Limited, Hong Kong.