JWT Decoder

Inspect a token’s header, payload and claims. Everything runs in your browser.

Local processing · No uploads · No account

Encoded token

0 characters

Paste a three-part JWT or a Bearer token.

Token details

Algorithm
—
Type
—
Signature
—
Timing
—

Signature not verified. Decoded values and timing claims do not establish authenticity.

Decoded header

Your decoded header will appear here.

Decoded payload

Your decoded payload will appear here.

Registered claims

Values from the payload
ClaimValueMeaning
Decode a token to inspect its claims.

Paste a token or choose Sample to get started.

Your token stays in this browser

No uploads, storage or external requests.

Keyboard shortcuts

Ctrl / ⌘ + Enter Decode Ctrl / ⌘ + Shift + C Copy

Common uses

Inspect authentication claims and debug API tokens.

How it works

Paste a three-part JWT to read its Base64URL-encoded header and payload. Decoding does not verify the signature, establish authenticity or prove the token is safe to trust.

Related tools

Frequently asked questions

Does this verify the signature?

No. This tool only decodes the header and payload. Verify signatures in your application with the correct key and expected algorithm.

Can I decode an encrypted token?

No. This decoder supports three-part signed JWTs with JSON header and payload, not five-part encrypted tokens.