What does a CSR decoder show?
A CSR decoder parses a PEM-encoded PKCS#10 request so its subject attributes, public-key size, and self-signature can be reviewed before it is sent to a certificate authority. This catches an incorrect common name, organization, country, damaged request, or mismatched signing operation early.
Node-forge performs the parsing and signature check entirely in the browser. The current output does not decode Subject Alternative Name or Key Usage extensions, and a valid self-signature proves only that the request was signed by its embedded key; it does not prove domain control or CA approval.