Sign in
← All matches
✅ Cryptographically verified · sealed pick #10324

Hapoel Kiryat Shmona vs Hapoel Tel Aviv

Premier League · Israel · 10 Oct 2026, 16:15 UTC

Final score
1 : 3
Result
Lost
Pick
Draw
Market
1X2
CLV vs fair close
+5.57%
Model prob.
24.0%
Best price
4.40
Min odds
4.25
Stake factor
1.00

Proof this pick was locked in before kickoff

The pick was encrypted before kickoff and published the moment it was sealed to Telegram and GitHub, each carrying an independent timestamp. The encrypted batch is also anchored in Bitcoin — a public record nobody, including us, can alter or back-date. After the match the key is released; decrypting that exact pre-published message reveals the pick, proving it was fixed in advance, not cherry-picked.

Encrypted pick (AES-256-GCM)
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
key fingerprint sha256: cf9cf7c8c3bf90e7180a508eb9b69c72ba9c79a0d6a9b75e2f2a4c096b4ae2f1
Decrypt it & read the pick
Decryption key (released after the match)
c131981c33a74f3ffa55a121e5dc081be951be3e578992f4bd9e979994f9eb13
Decrypt in CyberChef →
Verify it yourself — paste both values, no install

The Encrypted pick above is base64( nonce[12 bytes] + ciphertext + tag[16 bytes] ), AES-256-GCM. Zero-install check: open your browser console (press F12 → Console), paste this, press Enter — it decrypts the exact pick shown above:

const blob = Uint8Array.from(atob("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"), c => c.charCodeAt(0));
const key  = Uint8Array.from("c131981c33a74f3ffa55a121e5dc081be951be3e578992f4bd9e979994f9eb13".match(/../g).map(h => parseInt(h, 16)));
crypto.subtle.importKey("raw", key, "AES-GCM", false, ["decrypt"])
  .then(k => crypto.subtle.decrypt({ name: "AES-GCM", iv: blob.slice(0, 12) }, k, blob.slice(12)))
  .then(b => console.log(new TextDecoder().decode(b).split("\n")[0]));

Prefer a GUI? The orange button opens CyberChef pre-filled. Or split the parts yourself for any AES-256-GCM tool:

  • Algorithm: AES-256-GCM
  • Key (hex): c131981c33a74f3ffa55a121e5dc081be951be3e578992f4bd9e979994f9eb13
  • IV / nonce (hex): 5616ae827cdba0fefc186c4a
  • Ciphertext (hex): 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
  • Auth tag (hex): 7369acacce398e2d87f0565faf8babe3

Any standard AES-256-GCM tool returns the exact same pick — the algorithm is a public standard.

The pick is the first line of the decrypted text. Records sealed from 24 September 2026 are followed by a line break and spaces up to a fixed size, so every encrypted pick has the same length and its size reveals nothing about the selection before the key is published. The commitment hash is sha256(first line + key), exactly as before.

How to verify the Bitcoin timestamp yourself

Bitcoin doesn't store the pick — it stores a 32-byte fingerprint (SHA-256) of the encrypted batch, via OpenTimestamps. That fingerprint is frozen in a public block nobody can alter or back-date. You can't spot it by eye on a block explorer (a block holds thousands of unrelated transactions) — you verify it with the .ots proof and any OpenTimestamps tool:

  1. Download the sealed batch file (.jsonl) and its proof (.ots) from GitHub.
  2. Drop both into opentimestamps.org (or run ots verify *.ots). It replays the proof and confirms the Bitcoin block and its UTC time.
  3. See it independently: block #970794 · anchoring transaction (its OP_RETURN holds the commitment). The block's Timestamp is when it became permanent.

Note: Bitcoin anchoring lands ~30–60 min after sealing, and a block's timestamp is miner-set (approximate). So the exact “before kickoff” proof is the seal time above — timestamped instantly by Telegram/GitHub — while Bitcoin is the independent, un-forgeable anchor of permanence.