Skip to main content

Verify this draw

Win £50 Site Credit #5 was drawn on 28 Jul 2026. The winner was Joanne H. from Street with ticket #120.

Method

Verified auto-draw

Tickets in the draw

169

Winning ticket

#120

Winner's odds

1 in 6

In plain English

Before entries closed, we locked in a secret number and published a short code (its “fingerprint”) that proves we couldn’t change it later. After entries closed, that number, mixed with a public source of randomness that nobody controls, picked the winning ticket. So the result couldn’t be set up in advance or nudged afterwards. The steps further down let you re-run it and land on the same ticket yourself.

How this draw is provable

Before entries closed we published a commitment: a one-way fingerprint (SHA-256) of a secret random seed. After the draw we revealed the seed. Because the commitment was public before entries closed, the seed could not have been changed afterwards to draw a particular ticket.

The draw also folds in a public randomness beacon (drand, the League of Entropy) whose value is only published after entries close. Anyone can re-fetch the exact beacon round below and confirm the same value went into the draw.

Commitment (published before entries closed)
7ab2fdbf7c05f017e73875ff7ca8184ca4a6f54f1004c687053d9340db018b81
Revealed seed (published after the draw)
66ec0a60fe339daa1a8aae92ab05f1ffe15d213b70d8088c0044252fe2380e6f
Beacon round (emitted after close) & its public value
Round 6,327,867 on the drand chain 8990e7a9aaed2ffed73dbd7092123d6f289930540d7651336225dc172e51b2ce
0eed01a1bc0692784272deab6b4a3dcca0ad8a16d4e4000ed5e7224953c941e7
Re-fetch it: curl https://api.drand.sh/8990e7a9aaed2ffed73dbd7092123d6f289930540d7651336225dc172e51b2ce/public/6327867

Check it yourself

1. The seed matches the commitment

Run SHA-256 on the revealed seed - it equals the commitment above. For example, in a terminal:

printf '%s' '66ec0a60fe339daa1a8aae92ab05f1ffe15d213b70d8088c0044252fe2380e6f' | sha256sum

2. The seed and the beacon draw the winning ticket number

The 169 ticket numbers that went into this draw are lined up in ascending order; the locked-in seed mixed with the post-close beacon value shown above (both are in the $msg below) picks one. Because the seed was fixed before entries closed and the beacon value didn't exist until after, the result was set in advance yet could not be steered. Sort the numbers in play (their fingerprint is below, and the full set is in the entrants list) and recompute - you'll get ticket #120:

$seed    = '66ec0a60fe339daa1a8aae92ab05f1ffe15d213b70d8088c0044252fe2380e6f';
$tickets = [ /* the 169 ticket numbers in the draw, sorted ascending */ ];
$total   = count($tickets);
$msg     = 'draw:019f9b06-b63b-729c-aae0-dbdeee1ea128:'.$total.':0eed01a1bc0692784272deab6b4a3dcca0ad8a16d4e4000ed5e7224953c941e7';   // note: the trailing value is the drand beacon above
$span    = 1 << 60;                        // 60-bit space
$limit   = intdiv($span, $total) * $total; // reject above this to remove bias
$i = 0;
do {
    $n = (int) hexdec(substr(hash_hmac('sha256', $msg.':'.$i, $seed), 0, 15));
    $i++;
} while ($n >= $limit);
echo $tickets[$n % $total];                 // => winning ticket #120

3. Ticket #120 belongs to the winner

That ticket number is held by exactly one entry - Joanne H. from Street. We publish a fingerprint of every ticket number in the draw, so the set of numbers can't be altered after the fact, and we hold the full list in our tamper-evident audit trail, available to the Advertising Standards Authority on request.

Ticket-numbers fingerprint
8de76e73f630fd203d5c763aa4846278da5c24b5df3424bf7fc4a5ab85f62263

How ticket numbers are assigned

You don’t choose your ticket number (unless a competition lets you choose your own), and it isn’t simply the next number in order. When you buy, the system gives you a number using a secret shuffle that was set when the competition opened, before anyone had bought a ticket, and can’t be changed after.

Because that shuffle is secret and gives everyone a different number:

  • Two people can never end up with the same number.
  • Nobody, not you and not us, can guess which number a purchase will get. On this draw the number itself doesn’t decide anything anyway: the winner is picked by the draw above, which nobody can predict.
  • Your number is fixed the instant you buy, and recorded straight away.

We keep the shuffle secret so no one can work out in advance which number a purchase will get, which is what stops anyone targeting a winning ticket. Every number that’s given out still appears in the competition’s entrants list, so the numbers in play are public and can’t be quietly changed later.

Prove the shuffle yourself

When the competition opened we published a fingerprint of the secret shuffle key, so it’s on record as fixed before anyone bought:

Shuffle-key fingerprint (published at open)
7426d6a62797b2a473d01aaada2e2e38e5c6f182d815d1030a6d17b8ce399df2
The shuffle key itself (revealed now the competition has ended)
WG6ET2vnWeqS2xyXmYhIkHt8B8H3AzM43RjsQzv5

First check the key matches the fingerprint published at open, then re-run the shuffle for yourself: feed each position 1, 2, 3… through it and you get the 200 ticket numbers in the pool, each exactly once. If it matches the fingerprint and produces a clean set with no repeats, the numbers were genuine and untouched.

Show the recipe
// 1. the key matches the fingerprint published at open:
printf '%s' 'WG6ET2vnWeqS2xyXmYhIkHt8B8H3AzM43RjsQzv5' | sha256sum        // => 7426d6a62797b2a473d01aaada2e2e38e5c6f182d815d1030a6d17b8ce399df2

// 2. re-run the shuffle: position -> ticket number
$seed   = 'WG6ET2vnWeqS2xyXmYhIkHt8B8H3AzM43RjsQzv5';
$domain = 200;   // the pool the numbers are shuffled within
$prf = fn($v,$r) => (int) hexdec(substr(hash('sha256', "$seed:$r:$v"), 0, 8));
$permute = function(int $pos) use ($domain, $prf) {
    $half = (int) ceil(((int) ceil(log($domain, 2))) / 2);
    $mask = (1 << $half) - 1;
    $x = $pos - 1;
    do {
        $l = ($x >> $half) & $mask; $r = $x & $mask;
        for ($i = 0; $i < 4; $i++) { $n = $l ^ ($prf($r, $i) & $mask); $l = $r; $r = $n; }
        $x = ($l << $half) | $r;
    } while ($x >= $domain);
    return $x + 1;
};
// $permute(1), $permute(2), ... are the ticket numbers, in the order they were issued.

See how all our draws work on our fairness & security page, or back to all winners.

?