$ SudoStuff

About SudoStuff

SudoStuff is the developer’s everyday toolbox: 20 small utilities for the things you do constantly and never want to think about — pretty-printing a JSON response, decoding a token to check why auth is failing, working out whether a timestamp is in seconds or milliseconds, generating a handful of UUIDs.

Every one of them loads instantly, works without an account, and runs entirely on your machine.

Why it exists

Most utility sites make you pay in some other currency: an interstitial ad, a signup wall, a page that takes four seconds to become interactive, or a form that quietly POSTs your production access token to somebody else’s server.

SudoStuff is the opposite trade. The pages are server-rendered and small, the tools are plain JavaScript, and the data you paste in is processed by your own browser and then forgotten.

How your data is handled

Every tool here is a client-side tool. When you paste a JWT into the decoder or a payload into the formatter, that text is handled by JavaScript already running in your tab. There is no API endpoint behind it, so there is nothing to intercept, log or leak.

We store two things in your browser’s local storage, both of which you control: which tools you visited recently, and which ones you starred. Both are lists of tool names — never tool input. You can wipe them with Clear recent tools in the footer.

The full details are on the privacy page.

How it’s built

Laravel and Blade render the pages, Tailwind CSS handles the styling, and each tool ships a small ES module that loads only on its own page. There is no single-page-app framework, no client-side router and no database.

A handful of focused libraries do the heavy parsing — js-yaml for YAML, PapaParse for CSV, jsdiff for text comparison, and so on — and each is loaded lazily, only once you actually run the operation that needs it.

What’s here

  • JSON & Data — Format, validate, compare and convert structured data between JSON, YAML and CSV.
  • Encode & Decode — Translate data between the encodings the web runs on — Base64, URL escaping and JWTs.
  • Generators — Produce identifiers, secrets and codes using your browser’s cryptographic randomness.
  • Text — Test patterns, compare revisions, reshape casing and measure prose.
  • Date & Time — Convert timestamps and build schedules without second-guessing time zones.

Limitations worth knowing

  • Because everything runs in the browser, very large inputs are limited by your device’s memory rather than by a server.
  • The JWT decoder reads tokens; it does not verify signatures, which would require your secret or public key.
  • Conversions between formats are lossy in the places the formats genuinely disagree — nested JSON has no natural CSV representation, for instance. Each tool says so on its own page.
↑↓ navigate ↵ open esc close