What a SHA-256 hash tells you
A hash function maps any input to a fixed-size digest: 256 bits for SHA-256, written as 64 hex characters. The same input always gives the same digest, and changing one bit of the input changes about half of the digest. That makes it a fingerprint: compare the digest of a downloaded file with the one the publisher lists and you know whether the bytes are identical.
sha256("abc") = ba7816bf8f01cfea414140de5dae2223b00361a396177a9cb410ff61f20015adThe digests here come from crypto.subtle.digest, the Web Crypto implementation built into your browser. No hashing library is shipped with the page.
HMAC
Enter a key and the page also computes an HMAC, a hash that can only be produced by someone who knows the key. Webhook signatures (the X-Signature style headers) and HS256 tokens are HMACs. To check a token's signature, use the JWT decoder.
Text is hashed as UTF-8, exactly as typed
A trailing line break or a different line ending gives a different digest. If your result does not match one computed on a command line, check for a final newline: echo adds one, printf does not.