// CERTIFICATE VALIDATE & ANALYZE
Certificate Validator & Key Matcher
Drop a .pfx/.p12, .pem, .crt/.cer/.der, .csr or private key — or several at once — and get key ↔ certificate ↔ CSR matching (RSA modulus / public-key), expiry, chain, key strength, EKU/SAN, and Active-Directory attack context (PKINIT, Smart-Card-Logon, ESC1-style UPN SANs). Everything runs in your browser with an inlined crypto engine — no network, nothing stored, works air-gapped.
// INPUT — CERTS & KEYS
⚯
Load a certificate or key to begin
Matches keys to certs, flags expiry & weak crypto, and reads AD/ADCS context — GenericAll of the PKI world