Stake Dice Verifier
Recompute the dice roll for one bet on Stake from the server seed, client seed and nonce. Same HMAC-SHA256 stream the operator publishes, run in your browser.
Verification Inputs
Recomputes as you type. Nothing leaves your browser.
Dice Result
Paste the server seed and client seed from the bet. The dice result appears here as you type.
Read from the Wayback snapshot of 2025-07-19 (the live page challenges non-browser fetches); saved at research/casinos/stake/evidence/provably-fair-game-events-wayback-20250719.txt. Crash is verified on its per-seed curve only: live multiplayer Crash rounds come from a public hash chain, not your seed pair.
How Stake derives a Dice result
From float to result
What to compare
Where the seeds are
bytes = HMAC_SHA256(key = serverSeed, msg = clientSeed:nonce:round) // round starts at 0float = b0/256 + b1/256^2 + b2/256^3 + b3/256^4 // 4 bytes per floatresult = game event mapping applied to the floats, in orderOther Stake games
Keep what you worked out.
A free account saves your bankroll plans, sessions and the results you run here, on every device. No card, no upsell.
Frequently Asked Questions
Why 10,001 outcomes and not 10,000?
The range 0.00 to 100.00 inclusive has 10,001 values. Multiplying the float by 10,001 before flooring is what makes 100.00 reachable.
Does my target or over/under choice change the roll?
No. The roll depends only on the server seed, client seed and nonce. Your target only decides whether that roll paid.
Which Stake algorithm does this use?
Stake, Provably Fair: Game Events, read 2026-09-20. The byte stream is HMAC-SHA256 of clientSeed:nonce:round keyed by the server seed, converted to 4-byte floats, then mapped to the roll (0.00 to 100.00).
Do my seeds leave the browser?
No. The HMAC and SHA-256 run with the Web Crypto API on your device. The share link carries the seeds only because you copied it.
