CanDoYa
SK

Bezplatný generátor JWT

Beží celý vo vašom prehliadači - bez nahrávania, bez registrácie.

Use this for local testing. Do not paste production secrets into tools you do not control.

Generated token
Edit the header and payload to generate a token
Zdieľať tento nástroj

Čo robí generátor JWT?

Generátor JWT vytvorí kompaktný JSON Web Token z hlavičky, claimov payloadu a voľby podpisu. Tento nástroj generuje HS256 tokeny pomocou Web Crypto v prehliadači alebo nepodpísané tokeny na ladenie, bez odoslania JSONu či secretu na server.

Ako na to

  1. 1Edit the header. Keep typ as JWT and choose HS256 or none.
  2. 2Add payload claims. Write a JSON object with sub, iat, exp or custom claims.
  3. 3Enter a tajný kľúč. For HS256, use only throwaway development values.
  4. 4Copy the token. Copy the generated compact JWT from the output box.

Pre koho je nástroj určený

JWTs are compact URL-safe strings used in Authorization headers, callbacks and test fixtures. This tool follows the JWS compact form: base64url header, base64url payload and a signature segment separated by dots. Use it as a development helper, not as production key management.

Časté otázky

Is Generátor JWT free?

Yes. You can use this JWT generator without sign-up, account or usage limit.

Are my claims or secrets uploaded?

No. The JSON and HS256 secret are processed in the browser. For real systems, keep production signing keys in your own server or key-management environment.

Can I use this for production authentication?

Use it for local testing and examples. Production authentication also needs issuer checks, audience checks, expiry validation, replay controls, key rotation and secure storage.

Which algorithms are supported?

This version supports HS256 and the none algorithm for unsigned debugging tokens. It does not sign RS256, ES256 or private-key JWTs.

What is the none algorithm?

The none algorithm creates an unsigned JWT with an empty signature segment. It is useful only for debugging when a test system explicitly accepts it.

Why does the header alg change?

The selected algorithm button controls the real output, so the generator rewrites alg to HS256 or none to match the token it creates.