Zenixbase
Open app

Decode a JWT

Paste a JSON Web Token to decode its header and payload and see the issued/expiry times in plain UTC. The signature is not verified, so never trust a decoded token for authorization. The result is stored privately in your account.

No sign-up needed — runs instantly in your browser.

How it works

  1. 1Paste your token
  2. 2Press Run
  3. 3Download the decoded header and payload or find it in your files

Frequently asked questions

Does this verify the signature?
No — it only decodes the Base64url segments. Verification needs the signing key and is intentionally out of scope.
Are the timestamps converted?
Yes — iat, nbf and exp claims are shown as readable UTC times when present.

Related tools