Open protocolBG-CR-1
Play the computer →

Fair dice

Do not trust us.
Verify the roll.

Every online roll is created from two independent secrets. The player commits one secret and the server commits another before either side reveals its value.

01CommitThe player and server publish SHA‑256 commitments before the roll.
02RevealBoth original secrets are revealed only after the commitments are fixed.
03DeriveThe dice are calculated deterministically without bias under BG‑CR‑1.

Independent auditor

Verify a proof

Copy the diceAudit object from a public JSON replay and paste it in full. Verification runs locally in your browser.

No data leaves this browser