PEM block inspector
ClientInspect PEM-encoded blocks without sending them to a server.
How to use
Paste one or more PEM blocks.
About PEM block inspector
List PEM certificate/key blocks and base64 size—browser-only, no upload. The interactive transform on this page runs in your browser tab—Toolcore does not need your paste for the core operation described above.
How to use this page
Paste or type in the main workspace, run the primary action from the toolbar, then copy or download the result. Use Load example when the page offers it, or URL prefill (?q= / ?qb=) so agents and tickets open the same input.
Limits and safety
Utilities here are for development and inspection—do not paste live production keys, PANs, or recovery codes into any browser tab you do not control.
Block 1: CERTIFICATE Base64 payload: 32 characters Preview: MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
Nearby workflows on Toolcore
- JWT decode — Inspect JWT header and payload as JSON in browser; signature not verified. before you trust a token, digest, or key material in production.
- JWT verify (RSA / ECDSA) — Verify RS256/384/512 or ES256/384/512 JWTs with a PEM public key in the browser—Web Crypto only. before you trust a token, digest, or key material in production.
- SSH key generator — Generate Ed25519 or RSA 2048 key pairs as PEM in the browser—optional OpenSSH public line for Ed25519. before you trust a token, digest, or key material in production.
- Subresource Integrity (SRI) — SHA-256/384/512 base64 integrity tokens for script and link tags—UTF-8 paste or local file; Web Crypto only. before you trust a token, digest, or key material in production.
Common use cases
- Quickly count certs in a chain paste.
- Check block labels before JWT verify.
Common mistakes to avoid
Not a validator
Does not parse X.509 fields—use dedicated crypto tools.
FAQ
Private keys?
Processed locally; avoid putting secrets in shareable prefill links.
More tools
Related utilities you can open in another tab—mostly client-side.
JWT decode
ClientInspect JWT header and payload as JSON in browser; signature not verified.
JWT verify (RSA / ECDSA)
ClientVerify RS256/384/512 or ES256/384/512 JWTs with a PEM public key in the browser—Web Crypto only.
SSH key generator
ClientGenerate Ed25519 or RSA 2048 key pairs as PEM in the browser—optional OpenSSH public line for Ed25519.
Subresource Integrity (SRI)
ClientSHA-256/384/512 base64 integrity tokens for script and link tags—UTF-8 paste or local file; Web Crypto only.