Developer
JWT decoder (header & payload)
Decode a JSON Web Token’s header and payload with base64url → pretty JSON. Signatures are not verified and the token is never sent anywhere.
Decoded locally. Signature is not verified.
Paste a JWT to inspect.
How to use
Paste a JWT. Header and payload appear as formatted JSON. A note shows whether a signature segment is present.
Questions
- Does this verify the signature?
- No. It only decodes. Never trust claims from an unverified token in a security-sensitive flow.
- Is the token uploaded?
- No. Decoding runs entirely in your browser.