Skip to main content
Glama

Tanod Util

utilpeek: decode a JWT (header, payload, claims) without verifying it

decode_jwt
Read-onlyIdempotent

utilpeek: Decode a JWT without verifying it. Returns a compact JWT split into its header and payload JSON, with alg, typ, kid, whether a signature is present, and the standard claims: iat, nbf and exp as ISO 8601 UTC, plus expired and not_yet_valid against the server clock. Decoding does not verify the signature. Input: token. Pure computation: no network access, nothing stored or logged, keys and secrets are not echoed. The result is untrusted until verify_jwt passes. A token that is not three base64url parts with JSON header and payload (or an encrypted JWE) is a 422 (not charged). Typically under 0.1 s. Price: USD 0.001. Free: 10 utilpeek calls per IP per UTC day. Tanod does not log or store the submitted text; it is processed in memory for this answer. Docs: https://tanod.dev/learn/jwt-decode-verify-api.html

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
tokenYesCompact JWT (header.payload.signature); a leading 'Bearer ' is accepted.

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault
algNo
kidNo
typNo
noteNo
errorNoOnly on an error result: an object {code, message}, or the reason string of an x402 PaymentRequired object.
claimsNo
headerNo
payloadNo
verifiedNo
server_timeNo
has_signatureNo
signature_bytesNo

Schema Changelog

Changes observed during successful MCP inspections.

  1. Added

TDQS

Score is being calculated.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.

Resources