JWT Debugger & Verifier

Decode, inspect claims, and verify JSON Web Tokens (JWT) 100% locally with zero server transmission.

331 chars
Header (Red) • Payload (Purple) • Signature (Cyan)
eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJzdWIiOiIxMjM0NTY3ODkwIiwibmFtZSI6IkpvaG4gRG9lIiwiZW1haWwiOiJqb2huLmRvZUBleGFtcGxlLmNvbSIsInJvbGUiOiJkZXZlbG9wZXIiLCJpYXQiOjE3ODkwNjYxMTUsImV4cCI6MTc4OTE1NjExNSwiaXNzIjoiaHR0cHM6Ly9hdXRoLmV4YW1wbGUuY29tIiwiYXVkIjoiaHR0cHM6Ly9hcGkuZXhhbXBsZS5jb20ifQ.EWt3wwt5qCbiR1pVP-95Pjrwy4gvVH8Q6ZAirS5Gr1w

Header: Algorithm & Token Type

HS256
{
  "alg": "HS256",
  "typ": "JWT"
}

Payload: Data & Claims

Standard Claims Inspection
exp Expired
Fri, 11 Sep 2026 19:48:35 GMT
4 days ago
iat
Thu, 10 Sep 2026 18:48:35 GMT
5 days ago
iss
https://auth.example.com
sub
1234567890
aud
https://api.example.com
{
  "sub": "1234567890",
  "name": "John Doe",
  "email": "john.doe@example.com",
  "role": "developer",
  "iat": 1789066115,
  "exp": 1789156115,
  "iss": "https://auth.example.com",
  "aud": "https://api.example.com"
}

Signature Verification

Algorithm: HS256
Enter secret key to verify signature

JWT Debugger & Verifier

Utility: Inspect, debug, and verify JSON Web Tokens (RFC 7519) securely in your browser without exposing sensitive authentication tokens or secret keys to third-party servers.

JWT Anatomy: A JWT consists of three parts separated by dots (.): Header (algorithm & token type), Payload (claims & user data), and Signature (cryptographic proof of integrity).

Signature Verification: Supports symmetric HMAC signatures (HS256, HS384, HS512) computed locally via the browser Web Crypto API.

Security Tip: JWT payloads are encoded in Base64URL and are not encrypted. Never store confidential data like passwords or credit card numbers in a standard JWT payload!
Share on Social Media