Developer tools

Local JWT decoder

Read a compact JWT header and payload locally without verifying claims.

Processed locally

Decoding does NOT verify the signature, identity, expiry or any claims. Do not use this output as proof of authentication. Maximum 32,768 characters.

Your answer will appear here.

Help and method

Requires three Base64URL segments, valid UTF-8 and JSON objects for header and payload. Padding and noncanonical Base64URL are rejected. The signature is displayed without cryptographic verification.

Methods and reliability

Worked example

An example you can try or adapt to your own values.

Input
eyJhbGciOiJub25lIn0.eyJzdWIiOiIxMjMifQ.

Result

Not verified · {"alg":"none"} · {"sub":"123"}