JWT Decoder
Read the header and payload of a JSON Web Token without verifying.
Decoding only — the signature is never checked or sent anywhere.
Decode a JSON Web Token to read its header and payload — including expiry — without ever verifying or sending the signature.
Read the header and payload of a JSON Web Token without verifying.
Decoding only — the signature is never checked or sent anywhere.
A safe way to inspect tokens while debugging auth — the token stays in your browser.
Splits the token and base64url-decodes both parts into readable, pretty-printed JSON.
Reads the exp claim and tells you when the token expires — and whether it already has.
Decoding is purely local and the signature is never checked, so pasting a real token is safe.
Paste and read — the decoded output updates as you type.
Paste your JWT (the long eyJ… string) into the token box.
Read the header and payload below, along with the expiry note.
Debug with confidence — nothing you paste leaves the page.
Everything you might wonder about this tool.
Host your Discord or Telegram bot 24/7 on AMD EPYC — free tier, no card required.
Claim a free server →