Skip to content
M2TOOLKIT

JWT Generator

Create and sign a JSON Web Token for testing your API.

  • Free
  • No sign-up
  • Nothing is sent or stored
Algorithm
minutes

Leave empty or 0 for no exp claim.

Signed with the Web Crypto API in your browser. Never paste production secrets into websites — use this for testing and learning.

The calculation happens instantly in your browser. The numbers you enter are not sent to our servers or saved.

How to use the JWT Generator

  1. Choose the signing algorithm.
  2. Edit the payload claims and set an expiry.
  3. Enter or generate a secret, then copy the signed token.

What does this tool do?

A JWT has three Base64URL parts: a header naming the algorithm, a payload of claims, and a signature. HMAC algorithms (HS256/384/512) sign with a shared secret that the server also knows.

Signing uses your browser's Web Crypto API, so the secret never leaves your device. Decode tokens with the JWT Decoder.

Why use it?

  • HS256, HS384 and HS512.
  • iat and exp claims added for you.
  • Random secret generator.

Accuracy and limits

  • For testing only. Don't paste production secrets into any website.

Privacy

The calculation happens instantly in your browser. The numbers you enter are not sent to our servers or saved. There's no account to create and nothing to install.

Last reviewed by the M2Toolkit team.

Other tools people use alongside the jwt generator.