JWT Generator

Make test tokens for your API without writing code.

min

0 = no exp claim

For testing and development. Signing happens in your browser. Never paste production secrets into any website, including this one.

How to generate a JWT

  1. Enter the payload as a JSON object.
  2. Enter the HS256 secret your API uses in development.
  3. Set an expiry in minutes (0 for none) and select Generate.

The token is signed with HMAC-SHA256 using the Web Crypto API. iat (issued at) is added automatically, plus exp when an expiry is set. Your own payload values override them.

Use test secrets only. Anyone with the secret can create valid tokens for your API.

Frequently asked questions

Is the secret sent anywhere?

No. Signing happens in your browser. Still, never paste production secrets into any website.

Can I decode a token?

Yes, with our JWT Decoder.

Does it support RS256?

Not yet. Only HS256.

More text and developer tools

See all text and developer tools โ†’