⚡ Developer Tools

JWT Decoder

Decode and inspect JWT tokens. View header, payload, and expiration without sending to server.

100% Private — Your data never leaves your browser

Paste a JWT token here to decode its header and payload. The decoding happens purely on the client side.

Red
Purple

What is a JWT?

JSON Web Tokens (JWT) are an open, industry standard (RFC 7519) method for representing claims securely between two parties. They are commonly used for authentication and information exchange.

A JWT consists of three parts separated by dots (.):

  • Header: Contains metadata about the type of token and the cryptographic algorithms used.
  • Payload: Contains the claims or statements about an entity (typically, the user) and additional data.
  • Signature: Used to verify the message wasn't changed along the way (not verified in this client-side tool).

Note: This tool only decodes the token. It does not verify the signature. Since JWT payloads are just Base64Url encoded, anyone can decode them. You should never put secret information inside a JWT payload.

Related Tools