JWT Decoder for Azure AD

Your data never leaves your browser

Azure AD tokens have tenant claims, app roles, and group memberships.

Example

[Paste your Azure AD token here]

Tips

  1. 1tid = directory ID.
  2. 2oid = user's unique ID.
  3. 3roles claim for app roles.

Frequently Asked Questions

What is tid?

Tenant ID. Validate against allowed list.

Groups as IDs?

Map via Graph API.

v1 vs v2?

Different issuer URLs.