logologo
  • How it works
  • Why It Matters
  • Statistics
  • Pricing
  • API
logologo
  • How it works
  • Why It Matters
  • Statistics
  • Pricing
  • API
HTPBE?

Structural PDF tamper detection API. Catches edits your KYC stack misses.

Product

  • How It Works
  • Why It Matters
  • Use Cases
  • Pricing

Developers

  • API Reference
  • GitHub/docs
  • Changelogv2.25.2

Resources

  • FAQ
  • Blog
  • Comparisons
  • Legal & Imprint

© 2024–2026 TMI Iurii Rogulia · VAT ID: FI29845875 · Made in Finland 🇫🇮

Status

Algorithm v2.25.2

Back to FAQ
FAQ

How do I verify a certificate of authenticity or a diploma?

The question has two halves. One: was the certificate PDF edited after it was issued? A changed name, grade, or date usually leaves structural traces that surface as Modified — and that is what a tamper check answers.

The other half — whether the issuing body actually awarded the certificate — no file check can answer. That lives in the registrar’s or awarding body’s records. Use HTPBE? to rule out file tampering, the issuer’s own portal to confirm the record. See fake certificate detection →

← Previous

How do I verify a payslip or salary slip is genuine?

Next →

Does verifying a PDF mean you need the original to compare against?

Related questions

Keep reading

3 answers

Does verifying a PDF mean you need the original to compare against?

No. That is the most common myth. You don’t need a reference copy — structural analysis reads the evidence already inside the file you were sent: its revision layers, cross-reference structure, timestamps, producer fingerprint, signature state.

That is what lets HTPBE? return a verdict on a file you have never seen, from a sender you can’t reach. One question — was this file edited after it was created — answered without ever comparing it to an original. How one-sided PDF analysis works →

Does HTPBE? verify someone’s identity, or that a document is valid against the issuer?

No. HTPBE? verifies one thing only: whether the file was edited or forged after it was issued. It does not confirm a person’s identity, it does not check a document against the issuing authority’s records, and it does not judge whether the content is true.

Those are separate jobs. Identity — “is this really them” — belongs to KYC/IDV platforms such as Persona or Onfido. Confirming a record belongs to the issuer’s own portal. HTPBE? is the structural file-integrity layer that runs alongside them — tamper detection, not a verification platform. How HTPBE? differs from KYC platforms →

What is HTPBE?, and what does it do?

HTPBE? (Has This PDF Been Edited?) is a free online service that detects whether a PDF document has been modified after it was originally created. Upload your PDF and get an instant result in seconds — no registration, no payment, no technical knowledge required. Files up to 10 MB are supported.

The service analyzes the PDF’s internal structure, metadata, and creation history to detect any signs of post-creation modifications. Results come in three states: Intact (no modification found), Modified (modification detected), or Cannot Determine (the PDF was created with consumer software such as Microsoft Word or Google Docs, where anyone can create a document from scratch).

How HTPBE? works

HTPBE? uses multi-layer forensic analysis to detect post-creation modifications. The system examines:

  • PDF metadata — creation and modification timestamps, creator and producer applications, PDF version
  • Internal file structure — byte-level evidence of modification, xref tables, incremental update sections
  • Digital signatures — presence, validity, and post-signature modifications
  • Embedded content — JavaScript, hidden file attachments, and other suspicious elements

The detailed metadata and findings on the result page explain the reasoning behind each verdict.

Common use cases

HTPBE? is used across many real-world situations:

  • Financial & payments: bank transfer receipts, payment screenshots, invoices from suppliers, expense receipts, financial statements
  • Business & legal: contracts, business agreements, court documents, legal notices
  • Academic & professional: educational certificates, diplomas, academic transcripts, professional licenses
  • E-commerce & marketplaces: shipping confirmations, order confirmations, return and refund documentation

In every scenario, HTPBE? provides a quick first check to identify potentially tampered documents, helping you make safer decisions in transactions and business dealings.

Who uses HTPBE?

The service is used by anyone who receives PDF documents and needs to trust their authenticity before making a decision:

  • Online sellers and marketplace vendors checking payment confirmations from buyers before shipping
  • Freelancers and independent contractors validating client payment receipts and invoices
  • Small business owners reviewing invoices and financial documents from customers and suppliers
  • HR and recruitment professionals checking certificates, diplomas, and credentials from job applicants
  • Landlords and property managers validating tenant payment confirmations and rental receipts
  • Accountants and bookkeepers reviewing expense receipts and financial paperwork
  • Legal professionals performing preliminary checks on document integrity
  • Lending and risk teams using the API to detect edited bank statements at scale

Is it free?

Yes — the web tool at htpbe.tech is completely free and unlimited for manual checks. You can upload PDFs up to 10 MB, receive instant analysis, and access detailed results including metadata, findings, and modification verdict. No registration, no payment, no quota.

For developers and businesses needing programmatic access, the API offers monthly subscription plans starting at $15/mo. The free web tool does not consume any API quota.

Is it safe?

Yes. HTPBE? is built around a strict privacy model:

  • Files are never read. The service analyzes only the technical file structure — metadata, xref tables, signatures — and never extracts or reads document content. Sensitive contracts, financial statements, and personal records remain confidential.
  • Files are deleted automatically. Uploaded PDFs are stored temporarily in encrypted cloud storage solely for the duration of the analysis and are permanently purged after processing.
  • Encrypted in transit. All uploads and result pages use HTTPS/TLS.
  • Only metadata is retained. The result page stores the verdict, extracted metadata (filename, file size, dates, creator, producer), and structural findings — never the original file content.