JWT Toolkit

active

Decode, verify and sign JSON Web Tokens (HS/RS/ES/PS) against your own secrets and keys —

Chain infraBasex402 v2exactjwt.openverbs.com ↗︎
Transactions · 30d
0
Volume · 30d
$0.00
Unique buyers · 30d
0
Uptime · 30d
100.0%
Latency p50
190ms
Reported calls · 30d
4

Endpoints (3 live)

  • POST /v1/verify — Verify a JSON Web Token's signature and claims against a shared secret (HS*) or a PEM public key (RS/ES/PS). Returns { valid, payload } on success or { valid: false, reason } for a bad signature, expired/not-yet-active token, or a failed issuer/audience/subject check. Pass `algorithms` to pin the accepted signing algorithms and prevent algorithm-confusion attacks. (0.004 USDC on Base)
  • POST /v1/decode — Decode a JSON Web Token WITHOUT verifying its signature and return the header, payload and signature. A structurally malformed token is rejected before payment. Never trust a decoded payload you have not verified. (0.004 USDC on Base)
  • POST /v1/sign — Mint a signed JSON Web Token from a JSON claims object, using a shared secret (HS*) or a PEM private key (RS/ES/PS). Supports expiresInSec, notBeforeSec, issuer, audience, subject and keyid. An unusable key or option is rejected before payment. (0.004 USDC on Base)

First seen · last seen