JWT Decoder
Paste a JWT and instantly see its header, payload and signature details — decoded locally in your browser.
- Free
- No sign-up
- Runs in your browser
Your token is decoded locally in your browser and never sent anywhere.
How to use JWT Decoder
- Paste the JWT (the long base64 string, usually starting with eyJ…).
- The header and payload are decoded and formatted automatically.
- Review the claims and copy what you need.
About this tool
JSON Web Tokens pack information — like user IDs and expiry times — into a compact, signed string. This tool decodes the two readable parts (the header and the payload) so you can inspect claims during development and debugging.
Important: decoding does not verify the signature. Anyone can read a JWT’s contents without the secret, so tokens should never carry sensitive data.
When to use it: debugging logins and APIs that pass tokens around.
Frequently asked questions
Does this verify the token’s signature?
Is it safe to paste a JWT here?
What do the exp and iat claims mean?
Why does a JWT have three parts?
Can I edit a token here?
Does token length matter?
Related tools
How to use Jwt Decoder
Paste your code, data, or URL into the Jwt Decoder input area. Select the appropriate mode or option, then process. The formatted or converted output appears clearly and can be copied or saved.
Practical benefits
- Complete tasks faster without installing additional software.
- Keep files private since processing happens in your browser.
- Produce consistent results that integrate into your workflow.