JWT Decoder

Paste a JWT to read its header and payload. Decoding stays in the browser. Signature checks still belong on your server, because this page only shows what is inside the token.

How to use it

  1. Paste a token that has three dot-separated parts.
  2. Read the decoded header and payload.
  3. Copy either section if you need it elsewhere.

Useful for

  • Inspect exp and sub claims
  • See which algorithm the header names
  • Debug a token without sending it to a website

Related tools

Questions about JWT Decoder

Can this verify my JWT signature? +

This tool decodes and displays claims locally. Signature verification requires your secret/key and is intentionally not uploaded.

Is the token transmitted to a server? +

No. Decoding uses base64url parsing entirely in your browser.