CSR Decoder & Analyzer
Decode a Certificate Signing Request online and analyze it for compliance and security issues
Decode Your CSR
Upload your Certificate Signing Request file or paste the PEM content to decode it instantly. The CSR decoder shows the subject, common name, SANs, key algorithm and size, and signature algorithm — and the analyzer adds an immediate health report with detailed compliance checks on top.
Upload your CSR file
Drag and drop your Certificate Signing Request file here, or click to browse
Supports .csr, .pem, and .txt files
Supported formats:
- PEM format with headers (-----BEGIN CERTIFICATE REQUEST-----)
- Base64 encoded CSR content (with or without headers)
- DER format files (.csr, .pem, .txt)
What we check:
- Certificate signature validation
- Key strength and algorithm compliance
- Domain name validation (FQDN requirements)
- Subject Alternative Names (SAN) analysis
- RFC 5280 and CA/Browser Forum compliance
- Security best practices
Validation Checks & Best Practices
Our analyzer performs comprehensive validation against industry standards and security best practices.
Related tools
- CSR Generator — create a new CSR with RSA or ECC keys and SANs
- Key Matcher — verify that your private key matches this CSR
- Certificate Checker — analyze the certificate once your CA has issued it
Privacy: Your CSR is decoded and analyzed in memory on our servers and may be retained with the analysis result for service statistics. A CSR contains only public information — never paste your private key here. Read our privacy policy.