Provably Fair Explained: How It Works and How to Verify It
Provably fair is a method that lets you check, with math, that a casino game result was fixed before you placed your bet and was not changed afterward. The casino commits to a secret value by showing you its hash, you add your own input, and the secret is revealed later so you can recompute the result. It proves the result was not altered. It does not prove the game is generous or that the operator will pay you.
Key takeaways
- Provably fair uses a commit-reveal scheme: a hash of the server seed is shown first, and the server seed itself is revealed later.
- Your result comes from the server seed, your client seed and a nonce, which is a counter that goes up with each bet.
- You can check a bet yourself by hashing the revealed seed and recomputing the outcome.
- It does not prove a fair house edge, a license, solvency or that payouts will be honored.
- Lab-certified RNGs and on-chain randomness such as Chainlink VRF are different systems with different trust assumptions.
What does provably fair mean?
In short, a player can verify, after the fact, that the casino did not rig a specific result once the bet was placed. Traditional online casinos ask you to trust the operator and its test reports. The idea is not new. The Bitcoin Wiki notes that “most dice sites offer a form of provably fair, to allow the player to verify the results were not tampered with.”
How does provably fair work?
Most provably fair games use four parts. Exact details differ by operator, so always read the casino’s own fairness page.
- Server seed: a secret value the casino creates. One casino help page says it is “hashed and stored before the game starts to ensure it cannot be changed afterward.”
- Hashed server seed: the fingerprint of that secret, shown to you before you bet. One operator, Packs.com, says it shows “a SHA-256 hash of the server seed.”
- Client seed: a value you can set or change yourself. It means the casino cannot choose every input.
- Nonce: a counter that increases by one with each bet, so each bet gives a different result even with the same seeds.
Many games mix these inputs with a keyed hash. HMAC is, in the words of its standard (RFC 2104), “a mechanism for message authentication using cryptographic hash functions” that works with a secret key. Packs.com, for example, documents HMAC-SHA512. Other operators may use HMAC-SHA256 or another function, and one operator we checked does not name its function at all. When you rotate your seed pair, the casino reveals the old server seed. That reveal is the “reveal” half of commit-reveal.
How do you verify a provably fair bet?
Steps vary by site. This general version follows several operators’ help pages.
- Before you play, write down or screenshot the hashed server seed, your client seed and the nonce of each bet.
- Wait until your active bets are settled. One operator warns that rotating early can lose verification data for the previous seed.
- Rotate your seed pair. This reveals the old, unhashed server seed.
- Hash the revealed server seed with a SHA-256 tool and compare it to the hash you saved. If they do not match, the casino changed the seed.
- Enter the server seed, client seed and nonce into the casino’s verifier, or into an independent tool built from the casino’s published formula.
- Compare the recomputed result to the result you saw on your bet slip. They should match exactly.
Third-party verifiers must follow the casino’s exact formula. If the formula is not published, you cannot truly verify the bet.
What does provably fair prove, and what doesn’t it prove?
Provably fair proves one narrow thing: for a revealed seed, the recorded result follows from the committed inputs. That helps against after-the-bet tampering. It leaves several big questions open.
- House edge: a game can be provably fair and still pay less than it should. Fairness of the process is not fairness of the odds.
- Seed selection: the hash commits to one seed, but it does not show how the casino picked that seed. This is our reading of how the scheme works, not a claim from a source.
- License and solvency: nothing in the math shows the operator is licensed, holds enough funds, or follows rules about identity checks and player protection.
- Payouts: a verified win is still just a number on a screen until the operator pays it. Withdrawals are outside the scheme.
Treat provably fair as one small check, not a safety guarantee.
How is provably fair different from RNG testing and on-chain randomness?
There are three common ways a game can claim its randomness is fair. They answer different questions.
| Feature | Provably fair | Lab-certified RNG | On-chain VRF |
|---|---|---|---|
| Who checks it | You, bet by bet | An outside test lab, with periodic audits after certification (eCOGRA) | The blockchain, for each request |
| What is checked | That a result matches the committed seed | The RNG itself: for example source code, statistical output, seed generation and operating environment (eCOGRA) | A cryptographic proof that a random value was generated correctly (Chainlink VRF) |
| Where it runs | On the operator’s servers | On the operator’s servers | On a blockchain through a smart contract |
| Main limit | Says nothing about odds, license or payouts | You rely on the lab’s report and on the operator running the tested software | Only covers randomness, not the rest of the game or the operator |
On the lab side, eCOGRA says it reviews RNG source code, runs statistical analysis of output, checks how seeds are generated and assesses the environment the RNG runs on. iTech Labs says it “tests and certifies a large number of RNG’s every year” and offers an RTP and RNG audit certification based on server logs. Gaming Laboratories International (GLI) describes itself as providing “the gaming industry’s leading testing and certification services.” Certification scope differs by lab and by report, so check what a specific certificate covers.
Chainlink describes its Verifiable Random Function (VRF) as a service that “generates one or more random values and cryptographic proof of how those values were determined,” and says the proof “is published and verified onchain before any consuming applications can use it.” This is the randomness piece used by some on-chain games. For the wider picture, see our guide to the Web3 casino model, our DeFi sports betting hub, and how peer-to-peer betting works.
Risks
- False confidence: a “provably fair” label can make a risky site feel safe. It is not a license or a guarantee of payment.
- Custody: at most crypto casinos you deposit into the operator’s wallet, so you depend on the operator to return your funds.
- Regulatory and legal risk: online gambling rules differ by state and country. Check the law where you live before you play.
- Addiction risk: fast games with instant results can make losses add up quickly.
Gambling involves risk, and you can lose money. You must be 21 or older where required. If it stops being fun, help is available. In the US, call or text 1-800-MY-RESET (1-800-697-3738), the National Problem Gambling Helpline number adopted by the National Council on Problem Gambling in January 2026. It is free, confidential and open 24/7. See our responsible gambling page for more.
FAQ
What does provably fair mean?
It means a player can check that a game result was set by committed inputs before the bet and was not changed afterward. The casino shows a hash of its secret seed first, then reveals the seed so you can recompute the result.
What is a provably fair casino?
A provably fair casino is an online casino that publishes the method behind its game results, and lets players check them with seeds, a nonce and a formula. It does not mean the casino is licensed, solvent or that its odds are good.
How do I verify a provably fair result?
Save the hashed server seed before you play, rotate your seeds to reveal the old server seed, hash it and compare it to your saved hash, then recompute the result with the server seed, client seed and nonce.
Is provably fair the same as an RNG audit?
No. Provably fair lets you check individual bets. An RNG audit is done by a test lab, which reviews the random number generator itself, such as its code, output and seeding. They check different things.
Can a provably fair casino still cheat me?
It cannot change a committed result after your bet without the check failing, but it can still offer poor odds, delay or refuse withdrawals, or fail financially. The math does not cover those risks.
Sources
- Degen help center: Provably fair system
- Packs.com help center: Provably fair
- Operator help center: How to verify bets
- IETF RFC 2104: HMAC
- Bitcoin Wiki: Bitcoin Dice
- eCOGRA: RNG certification
- iTech Labs
- Gaming Laboratories International
- Chainlink documentation: VRF
- National Council on Problem Gambling: 1-800-MY-RESET announcement (January 29, 2026)
