Field notes / operating terms
About
Hasharium.
Hasharium is an independent, open-source study of deterministic forms derived from decentralised identifiers. Nothing is minted, made scarce, or centrally assigned.
What the site calculates
Direct DIDs are hashed locally with SHA-256. Handles are sent to Microcosm Slingshot for resolution to a canonical DID before hashing. Specimen geometry is reproducible for the same DID and generator version.
How sign-in works
Hasharium uses the official AT Protocol browser OAuth client with PKCE and DPoP. It never asks for an app password. OAuth session material is retained by that client in this browser’s IndexedDB and is removed or revoked when you sign out.
What permission is requested
The application asks for granular repository access to click.croft.hasharium.collection.entry, click.croft.hasharium.intersection, and click.croft.hasharium.exhibition. It does not grant access to record types outside Hasharium, private account data, blobs, email, or account management.
What a profile publishes
A collected specimen is a public record in your PDS containing its subject DID, creation time, generator version, and an optional public field note. Repository records are public by design. Do not put private information in notes.
What stays on the device
Signed-out study-tray entries are stored in localStorage. Hasharium has no analytics and does not transmit the local tray. Clearing site data removes local tray and OAuth storage from this browser but does not delete confirmed PDS records.
Use and availability
The service is provided without warranty under the GNU AGPL v3. Network identity services and PDSes can be unavailable or return incomplete data. Generated names and traits are playful morphology, not claims about a person’s character, health, value, or reputation.