JavaScript Object Notation (.json)

RFC Standard

JavaScript Object Notation (JSON) is a lightweight, human-readable text format for data interchange, completely language-independent and universally used for web APIs.

Converti da JSON a HTML

Convertitore gratuito da JSON a HTML nel browser. Converti i file istantaneamente sul tuo dispositivo.

Comprimi JSON online

Compressione 100% privata nel browser – i file non lasciano mai il dispositivo

Ispeziona e metadati

I sistemi operativi e gli analizzatori di file identificano i file JSON ispezionando la sequenza di byte binari iniziale:

Seleziona o trascina i file

Seleziona o rilascia i file qui

Conversione 100% privata nel browser: i file non lasciano mai il tuo dispositivo

o incolla Ctrl+V
Garanzia di privacy con zero trasmissioni di rete: 0 byte caricati su server esterni. Tutta l'elaborazione è avvenuta localmente nella sandbox del tuo browser.

Firma dell'intestazione a livello di byte (Magic Bytes)

I sistemi operativi e gli analizzatori di file identificano i file JSON ispezionando la sequenza di byte binari iniziale:

FIRMA ESADECIMALE (OFFSET 0):

7B or 5B

RAPPRESENTAZIONE ASCII: { or [

Standardizzazione: RFC 8259 / ECMA-404 / ISO/IEC 21778

Specifiche tecniche

Architettura del containerLightweight, text-based, language-independent data interchange format
CompressioneGzip / Brotli / Zstandard text compression (typically achieves 80%-90% ratio)
Endianness dei byteUTF-8 encoded Unicode (no Byte Order Mark / BOM recommended)
Spazi coloreNot applicable
Canali e strutturaSix basic data types: object, array, string, number, boolean, null
Dimensioni massimeUnbounded; limited only by parser memory and maximum string length
TrasparenzaNot applicable
Streaming e progressivoNDJSON (Newline Delimited JSON) / JSON Lines enables progressive stream processing

Matrice di confronto tecnico: JSON vs Concorrenti

Attributo tecnicoJSON (Corrente)YAMLXMLProtocol Buffers
Syntax ComplexityMinimal (6 types, strict syntax)High (indentation-based, complex spec)High (verbose closing tags, namespaces)Schema-defined binary wire format
Parsing PerformanceExtremely fast in all modern languagesSlow (complex indentation parsing)Moderate to slow (heavy DOM construction)Ultra-fast (zero-copy binary deserialization)
Comments SupportedNo (deliberately excluded to prevent metadata creep)Yes (# comments)Yes (<!-- comments -->)Yes in .proto files
Network Payload SizeCompact text (very high gzip ratio)Compact textVerbose text (heavy tag repetition)Ultra-compact binary

Modalità di corruzione comuni e guida al recupero Hex

⚠️ SyntaxError: Unexpected token , in JSON at position X.

Causa principale: Trailing comma after the last item in an array or object, which is strictly illegal in RFC 8259 JSON.

Ripristino: Remove trailing commas from object keys and array entries before passing to JSON.parse().

⚠️ SyntaxError: Unexpected token ' in JSON.

Causa principale: Strings or keys enclosed in single quotes ('') instead of double quotes ("").

Ripristino: Replace all single-quoted strings and keys with standard double-quoted strings.

Analisi di sicurezza e vettori di attacco del parser

JSON is text-only and safe from direct code execution, but parsing untrusted JSON can lead to Prototype Pollution, ReDoS, or memory exhaustion.

Vettori di attacco noti

  • Prototype Pollution: Keys named '__proto__' or 'constructor' modifying Object.prototype in JavaScript applications.
  • Stack overflow denial of service via deeply nested JSON structures (e.g. 10,000 opening brackets).
  • Loss of numeric precision: JavaScript numbers larger than 2^53 - 1 (9,007,199,254,740,991) silently lose precision.

Migliori pratiche difensive: Never evaluate JSON with eval(). Use JSON.parse() and sanitize '__proto__' properties in recursive object merge functions.

Origini storiche e tappe fondamentali

2017RFC 8259 standardizes UTF-8 as the sole mandatory character encoding for JSON.
2013ECMA-404 defines the universal JSON syntax standard.
2001Douglas Crockford specifies JSON to enable stateless browser-to-server data communication.

Vantaggi principali e pro

  • Human-readable, self-describing, and concise text structure.
  • Native parsing support built into JavaScript engines (JSON.parse) and every major programming language.
  • Strict specification prevents arbitrary code execution.

Limiti tecnici e svantaggi

  • No support for comments, trailing commas, or circular object references.
  • No native binary types (binary data must be base64-encoded, inflating size by 33%).
  • Inefficient serialization compared to binary formats like Protocol Buffers or MessagePack.

Curiosità tecniche interessanti

  • Douglas Crockford added the software license clause 'The Software shall be used for Good, not Evil' to the original JSMin JSON tools.
  • JSON is a strict subset of JavaScript syntax, but until ES2019, raw unescaped U+2028 and U+2029 characters were valid in JSON but invalid in JavaScript strings.

Domande tecniche frequenti

Why doesn't JSON allow comments?

Douglas Crockford deliberately excluded comments from the JSON specification to prevent developers from putting parsing instructions or environment-dependent configuration pragmas into data feeds, preserving universal interoperability.

How do you store 64-bit integers in JSON without losing precision?

JavaScript's native Number type is an IEEE 754 double-precision float, which only supports integers up to 2^53 - 1 precisely. 64-bit integers (like database IDs or timestamps) must be serialized as strings (e.g. '1234567890123456789') in JSON.