DEV Community

tirumala rao kemburu
tirumala rao kemburu

Posted on

I built a JWT decoder that doesn't send your token to a server — Here's why you should care

jwt.io is awesome. I use it daily. But did you know it sends your token to their server? Check Network tab — POST request.

For production JWTs with user data, that's risky.

I built a free alternative that decodes 100% offline in your browser:

🔒 No network requests — Token never leaves device
⚡ Works offline after page loads
🆓 Free, no signup, no limits
🌳 Also has JWT validator, expiry check, algorithm check

Try it: https://www.utilitynestai.com/jwt-decoder

How it works:

  • Base64 decode via atob() in Web Worker
  • No fetch() calls
  • Verified via DevTools → Network tab → 0 requests after page load

I also built 40+ similar privacy-first tools — JSON Formatter with Compare/Merge/Tree View + Convert to XML/CSV/YAML, Regex Tester, QR Generator with logo (no watermark), IP Lookup, SSL Checker etc.

All client-side. All free.

🔗 https://www.utilitynestai.com

Would love feedback — What tool should I add next?

javascript #webdev #security #jwt #privacy #tooling

Top comments (0)