Encode / Decode Workbench
Base64, hex, URL, HTML, Unicode, Base32, quoted-printable, MIME headers, PowerShell -EncodedCommand, gzip/deflate (SAML), punycode, ROT and XOR — auto-detected, chainable and shareable as a link.
How to use
- Paste text. A suggested decode step appears if the format is recognised.
- Add steps to chain them (e.g. Base64 → inflate → XML), or press Auto-decode.
- Copy the output, or the equivalent shell command to cross-check.
Steps
No steps yet — the output below is your input unchanged.
Output
Common questions
How do I decode a PowerShell -EncodedCommand?
Paste the whole command line or just the encoded part: it is detected automatically and decoded from Base64 as UTF-16LE, the way PowerShell reads it. This comes up often in incident response.
What does Auto-decode do?
It repeatedly detects the encoding and adds the right step — for example Base64, then URL decoding, then raw deflate for a SAML redirect — and stops when nothing more can be decoded.
What is a look-alike domain?
A domain that uses letters from other alphabets to imitate a real one, such as a Cyrillic “а” in “аpple.com”. Punycode (xn--) domains are decoded and flagged when they imitate a well-known name.
Known limitations
- Text is treated as UTF-8; binary output is shown as hex (the preview stops at 4 KB, copy gives everything).
- Decompressed output is capped at 50 MB to stop decompression bombs.
- The look-alike check covers common Cyrillic, Greek and Armenian tricks, not the full Unicode confusables list.
- Auto-detect is a best guess on short inputs — check the suggested step makes sense.
- Browser extensions with access to this site can read the page. For sensitive data, use a private window with extensions off. How the lock works
Related reading on CipherMind
Standards & references
- RFC 4648 — Base16, Base32, Base64 (opens in a new tab)
- RFC 3986 — URL percent-encoding (opens in a new tab)
- PowerShell -EncodedCommand (opens in a new tab)
- SAML 2.0 bindings (redirect = deflate + Base64) (opens in a new tab)
- RFC 3492 — Punycode (opens in a new tab)
- Unicode TR 39 — confusable characters (opens in a new tab)
- RFC 2045 — quoted-printable (opens in a new tab)