Security / Data tool

JWT Decoder

Decode a JSON Web Token header and payload locally. Decoding does not verify the signature.

Your data is processed locally in your browser and is not sent to our server.

Result

Your result will appear here.

How to use JWT Decoder

  1. Paste a three-part JWT.
  2. Inspect the decoded header, payload, and signature section.

Example

eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJzdWIiOiJzYW1wbGUiLCJpYXQiOjE3MDAwMDAwMDB9.

Technical details

The header and payload are Base64URL-decoded in the browser. No cryptographic signature verification is performed.

Frequently asked questions

Is this JWT verified?

No. Decoded only. Signature has not been verified.

Is it safe to paste a production token?

The token is not sent to our server, but avoid sharing sensitive tokens on any shared device.