Comma-Separated Values (.csv)

RFC Standardi

Comma-Separated Values (CSV) is a ubiquitous plain-text format for tabular data, where each line represents a data record and fields are separated by delimiter characters.

Muunna tiedostot muodosta XLSX muotoon CSV

Ilmainen selaimen sisäinen XLSX - CSV-muunnin. Muunna tiedostoja välittömästi laitteellasi.

Pakkaa CSV verkossa

100% yksityinen selaimessa – tiedostot eivät koskaan poistu laitteeltasi

Tarkastele ja metatiedot

Käyttöjärjestelmät ja tiedostoanalyysaattorit tunnistavat CSV-tiedostot tarkistamalla tiedoston alun binäärisarjan:

Valitse tai vedä tiedostoja

Valitse tai pudota tiedostot tähän

100 % yksityinen selaimen sisäinen muunnos - tiedostot eivät poistu laitteeltasi

tai liitä Ctrl+V
Tietosuojatakuu: 0 % verkkosiirtoa 0 tavua ladattu ulkoisille palvelimille. Kaikki käsittely tapahtui paikallisesti selaimen hiekkalaatikossa.

Tavutason otsikon allekirjoitus (Magic Bytes)

Käyttöjärjestelmät ja tiedostoanalyysaattorit tunnistavat CSV-tiedostot tarkistamalla tiedoston alun binäärisarjan:

HEX-ALLEKIRJOITUS (OFFSET 0):

Plain Text

ASCII-ESITYSTAPA: ASCII / UTF-8

Standardointi: RFC 4180 / IETF

Tekniset tiedot

SäiliöarkkitehtuuriDelimited flat text file representing tabular data rows and columns
PakkausGzip / Deflate achieves 85%-95% compression on repetitive tabular records
Tavujärjestys (Endianness)UTF-8 text stream (optional UTF-8 BOM EF BB BF used by Excel)
VäriavaruudetNot applicable
Kanavat ja rakenneRow records delimited by CRLF with columns delimited by commas
Suurimmat mitatUnbounded; streamable to gigabytes without loading entire file in memory
LäpinäkyvyysNot applicable
Suoratoisto ja progressiivinen latausNative line-by-line stream processing supported by all data pipelines

Tekninen vertailumatriisi: CSV vs. kilpailijat

Tekninen attribuuttiCSV (Nykyinen)Excel (XLSX)ParquetJSON
File TypePlain text flat tableZipped XML spreadsheetBinary columnar storageHierarchical text
Multiple SheetsNo (single flat table only)Yes (multiple workbooks and sheets)Partition-based storageNested arrays and objects
Data TypesUntyped raw textTyped cells, formulas, formattingStrict binary column typesPrimitive types (string, number, bool)
Big Data AnalyticsSlow (requires reading every row linearly)Not suitable for big dataUltra-fast (column pruning & predicate pushdown)Moderate

Yleiset korruptiotilat ja heksatietojehdotusopas

⚠️ Columns shift to the right or row counts do not match.

Perussyy: A text field containing an unescaped comma without surrounding quotation marks.

Korjaus: RFC 4180 requires fields containing commas to be wrapped in double quotes: "Smith, John".

⚠️ Accented characters render as strange symbols (mojibake like é instead of é) in Excel.

Perussyy: Excel opened a UTF-8 CSV assuming the legacy Windows ANSI/CP1252 character encoding.

Korjaus: Prepend the 3-byte UTF-8 Byte Order Mark (0xEF 0xBB 0xBF) to the beginning of the file.

Turvallisuusanalyysi ja jäsenninhyökkäysvektorit

CSV files open directly in spreadsheet software like Excel and Google Sheets, exposing users to Formula Injection (CSV Injection) attacks.

Tunnetut hyökkäysvektorit

  • Formula Injection: Cells starting with '=', '+', '-', or '@' executing spreadsheet macros or DDE commands (e.g. '=cmd|' /C calc'!A0').
  • Data exfiltration via HYPERLINK() formulas sending sensitive cell data to remote attacker servers upon click.

Parhaat puolustuskäytännöt: When exporting user data to CSV, prepend a single quote (') or tab to any cell starting with '=', '+', '-', or '@' to force plain text rendering in Excel.

Historia ja virstanpylväät

2005IETF publishes RFC 4180, establishing the formal specification for CSV files.
1972IBM Fortran (H Extended) compiler implements comma-delimited input/output.

Tärkeimmät edut

  • Maximum simplicity: readable in any text editor and importable into every database and spreadsheet.
  • Extremely fast line-by-line streaming without building a full in-memory DOM.
  • Minimal overhead: no verbose tag syntax or schema definitions.

Tekniset rajoitukset

  • No standard data types: numbers, dates, booleans, and text are all stored as raw strings.
  • No support for multiple sheets, cell formatting, formulas, or metadata.
  • Delimiter conflicts (commas inside text, decimal commas in European locales) cause frequent parsing bugs.

Mielenkiintoisia teknisiä faktoja

  • In many European countries where commas are used as decimal points, semicolons (;) are used instead of commas as CSV separators.
  • Microsoft Excel historically required a UTF-8 BOM (0xEF 0xBB 0xBF) to correctly display non-ASCII accented characters.

Usein kysytyt tekniset kysymykset

What is RFC 4180?

RFC 4180 is the official IETF standard for CSV. It mandates that fields containing commas, line breaks, or double quotes must be enclosed in double quotes, and internal quotes must be escaped by doubling them ("").

Why do CSV files open with corrupted characters in Excel?

Older versions of Microsoft Excel default to the local Windows code page (like Windows-1252) rather than UTF-8 when opening CSV files directly. Adding a UTF-8 BOM (Byte Order Mark) at the start of the file forces Excel to decode UTF-8 correctly.