JWT & tokens tools
A JWT you are debugging is, by definition, a working credential. Where you paste it is a security decision, not a convenience one.
We have not built this section yet. Rather than leave the page empty, here is what we would use in the meantime — and whether it actually runs on your device.
These are other people's tools and we do not control them. The labels reflect our reading of how each one works at the time of writing — if you are about to hand over something sensitive, verify it yourself rather than taking our word, or anyone's.
What will replace this
Decode JWTs, inspect claims and expiry, and check certificates without pasting them into a server. When those ship they will appear on this page, at this address — so a bookmark or a link you share now keeps working.
See what the finished sections look like →