Provably fair
Every draw is locked in before it happens. Before the first ticket of a round is sold, we publish a fingerprint (hash) of a secret number. You can see it on the home page next to "Draw locked". When sales close, it's mixed with a Solana block that didn't exist yet, so nobody, not even us, can know the winner in advance. After the draw we reveal the number, and anyone can re-run the maths to check the winner wasn't picked by hand. This page runs the check in your own browser, so you don't have to trust us.
1. The revealed seed is hashed with SHA-256 and compared to the hash published when the round opened. If they match, the seed wasn't changed at any point during the round.
2. When sales closed, a future Solana slot was named. The draw uses the hash of the first finalized Solana block at or after that slot, which nobody could know in advance. This page fetches that block straight from Solana to confirm its hash. You can also look it up on Solscan.
3. The winning ticket is recomputed as HMAC-SHA256(seed, "roundId:blockHash:counter"), turned into a number and reduced modulo the total tickets, with rejection sampling so every ticket has exactly equal odds. Rounds drawn before the Solana block was added use "roundId:counter".
4. That ticket number is looked up in the public ticket list to confirm it belongs to the announced winner's account.
The same check is available as a standalone script (scripts/verify_draw.js) for anyone who wants to run it offline.