How to use it
- 1
Paste PEM CERTIFICATE blocks.
- 2
Run the local inspection.
- 3
Review subject, issuer, validity, SANs, and chain order.
What the tool can do
- Parses bounded DER/ASN.1 X.509 certificate structures.
- Shows serial, key and signature algorithms, Basic Constraints, and SANs.
- Calculates SHA-256 fingerprints through Web Crypto.
Common use cases
- Inspect a public certificate before installation.
- Review SANs and validity dates.
- Compare a SHA-256 fingerprint offline.
How it works inside
Input is bounded to 1,000,000 characters, 20 certificates, and 256,000 DER bytes per certificate.
The result is an inspection, not proof that a certificate is trusted.
Questions and answers
Is browser trust verified?
No. The tool does not use the system trust store or make network requests.
Can I paste a private key?
No. Private keys are explicitly rejected and should not be submitted to inspection tools.
