Encoding & Crypto Tools
Encode, decode, hash, sign-inspect and generate — using your browser's native crypto engine. Nothing is ever uploaded.
Base64 Encode / Decode
UTF-8 safe Base64 with URL-safe variant support.
Hash Generator
MD5, SHA-1, SHA-256, SHA-384, SHA-512 and CRC32 at once.
JWT Decoder
Decode JWT header and payload, check expiry locally.
UUID Generator
Bulk-generate cryptographically random UUID v4.
Password Generator
Strong random passwords with charset control.
AES-256 Encrypt / Decrypt
Password-based AES-GCM encryption, fully in-browser.
Encode / Decode
Escape or unescape HTML special characters.
Unicode Converter
Convert text to \uXXXX escapes and back.
Crypto-grade privacy
Hashing and encryption on this site use the browser's built-in Web Crypto API — the same primitives trusted for TLS. Your input never leaves the device: there is no server to send it to. This makes the tools safe for tokens, keys, password hashes and other sensitive material.
FAQ
Can you recover a password from a hash?
No — and no legitimate tool can. Hashing is one-way. Use the Hash Generator to verify hashes, not to crack them.
Does the JWT decoder verify signatures?
No, it decodes and displays header, payload and expiry. Signature verification requires the secret or public key and is planned as a separate tool.
Which algorithms are used for AES?
AES-256-GCM with a PBKDF2-SHA256 key derived from your password (150,000 iterations, random salt and IV per message).