developer

JWT Decoder

Paste a token, inspect its three sections, and copy decoded header or payload JSON without treating the signature as verified.

Signature is not verified

This tool decodes header and payload content only. Trust decisions still require verification with the issuer, audience, expiry policy, and signing key.

304 chars / 3 sections

Paste a JSON Web Token with header, payload, and signature sections.

Token Sections

Header, payload, and signature are parsed before decoding.

Header

base64url JSON

eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9

Payload

base64url JSON

eyJpc3MiOiJodHRwczovL2F1dGgueXVrdC50b29scyIsInN1YiI6InVzZXJfMTIzIiwiYXVkIjoiZGFzaGJvYXJkIiwibmFtZSI6Ill1a3QgVG9vbHMiLCJyb2xlIjoiYWRtaW4iLCJzY29wZSI6InRvb2xzOnJlYWQgdG9vbHM6d3JpdGUiLCJpYXQiOjE3NjcyMjU2MDAsIm5iZiI6MTc2NzIyNTYwMCwiZXhwIjoxODkzNDU2MDAwfQ

Signature

16 chars

sample-signature
ready to decode

Decoded Inspector

waiting

Algorithm

missing

header alg

Signature

not verified

decode required

Expiry

no exp

claim missing

Activation

no nbf

claim missing

Claims

Issuer

iss

missing

Subject

sub

missing

Audience

aud

missing

Expires

exp

missing

Not Before

nbf

missing

Issued At

iat

missing

JWT ID

jti

missing

Header JSON

Decode a token to inspect header JSON.

Payload JSON

Decode a token to inspect payload JSON.

Signature Section

Decode a token to inspect the signature bytes as copied text. Verification is not performed.
Related tools and guides