🔑
🤝

Inspect OAuth and OpenID Connect Tokens

Decode access tokens, ID tokens, and refresh tokens from Google, Auth0, Okta, Microsoft, and other OAuth providers.

មិនចាំបាច់ចូលគណនី

🔒 The token is decoded entirely in your browser. Nothing is sent to any server.

OAuth / OIDC tips

🤝

ID tokens contain user identity claims (`sub`, `email`, `name`). Access tokens contain authorization claims (`scope`, `roles`). They serve different purposes.

💡

For Google OAuth tokens, the `email_verified` claim is essential — never trust the `email` claim without verifying this is `true`.

🔍

Auth0 and Okta tokens use custom claims with namespace URLs (e.g., `https://yourapp.com/roles`). These appear in the payload but aren't standard claims.

📋

Microsoft Entra (Azure AD) tokens have specific claims like `tid` (tenant ID), `oid` (object ID), and `appid` — see them clearly in the decoded payload.

វាដំណើរការដោយរបៀបណា

1
បញ្ចូល
Enter your data into the tool above. Everything stays local to your browser.
2
ដំណើរការ
The tool processes your data instantly in your browser using JavaScript. No server, no waiting.
3
ទាញយក
Get your result instantly. Nothing is stored after you leave the page — complete privacy.

ហេតុអ្វីត្រូវប្រើរបស់យើង?

ឥតគិតថ្លៃទាំងស្រុង — គ្មានថ្លៃដែលលាក់ ឡើយ
មិនចាំបាច់មានគណនី អ៊ីមែល ឬចូលគណនី
ឯកសារមិនដែលចេញពីឧបករណ៍របស់អ្នក
គ្មានដែនកំណត់ទំហំឯកសារ
គ្មានស្នាមមាតិការនៅលើលទ្ធផលណាមួយ

Also check out…

សំណួរដែលសួរជាញឹកញាប់