JWT Claims Validator
Check issuer, audience, time, nonce, and profile claims separately from cryptographic signature verification.
Claim policy is not signature verification, authorization, or proof that an issuer controls a URL.
JWTThree-part compact token
Expected claimsJSON policy · not a key
StatusReviewable
Signaturenot_checked
Claims6
Claim reviewSignature intentionally not checked
{
"signature": "not_checked",
"claimPolicy": "pass",
"issues": []
}