Decode the header and claims of a compact JWT.
The frame below runs the same code as this page, in the reader's own browser. Nothing is sent to us, and nothing is sent to you.
Pick a dark background and the text and panels follow it, so the frame stays readable on a dark page.
A compact token is split into header, payload, and signature segments, then each segment is Base64url-decoded; the first two are parsed as JSON. The operation is inspection only and does not verify cryptographic integrity or issuer policy.
eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJzdWIiOiIxMjM0NTY3ODkwIiwibmFtZSI6IkpvaG4gRG9lIiwiaWF0IjoxNTE2MjM5MDIyfQ.SflKxwRJSMeKKF2QT4fwpMeJf36POk6yJV_adQssw5c
Signature: SflKxwRJSMeKKF2QT4fwpMeJf36POk6yJV_adQssw5c HEADER Alg: HS256 Typ: JWT PAYLOAD Sub: 1234567890 Name: John Doe Iat: 1516239022
API troubleshooting, fixture checks, and issuer/audience reviews decode JWTs.