Security & Tokens Tools — JWKS, Verify, Certificates, Secrets

Six browser-local utilities: inspect JWK/JWKS, verify JWT signatures against pasted JWKS, decode PEM X.509 certificates, scan secrets, hash/verify bcrypt, and convert public PEM ↔ JWK. No remote JWKS fetch, not a trust store. Also useful: jwt-decode, jwt-encode, validate-env, and password-generator.

  • Inspect JWKS and verify JWT signatures against pasted keys.
  • Decode PEM certificates and convert public PEM ↔ JWK.
  • Scan pasted text and hash/verify bcrypt locally.

Back to security tools on the hub

Guides