← All tools

JWT decoder

Paste a JWT and read its header and payload. Your token never leaves this computer.

Action

How to use it

  1. Paste the JWT into the box (three parts separated by dots, starting with eyJ…).
  2. The header and payload appear formatted. The exp, iat and nbf times are turned into readable dates.
  3. Copy the result.

Frequently asked questions

Does this tool verify the signature?

No. It only reads the contents. It does not prove that a token is genuine.

Is it safe to paste my token?

The token is decoded in your browser and never sent to a server. Still, avoid sharing valid tokens from live systems anywhere.

How can I tell if it has expired?

If exp is before the current time the result says expired. If nbf is in the future it says not valid yet.

Related tools