Jwt Security Validator MCP tool
MCP
findutils:jwt_security_validator Decode a JWT and return a list of security checks (algorithm strength, expiration, not-before, issued-at, issuer, audience, subject, signature presence) plus an overall valid flag. Does NOT verify the signature — it only inspects claims and header fields.
Arguments
application/json-
token
string required
The JWT to inspect (three dot-separated base64url segments).
-
now
integer optional
Unix timestamp (seconds) to evaluate time claims against. Default: current time.
Example arguments
Verified{
"token": "eyJhbGciOiJIUzI1NiJ9.eyJzdWIiOiJ4In0.sig"
} More Developer tools
- A2ui Basic Catalog Returns the authoritative basic-catalog JSON Schema (components, functions, theme) for the requested A2UI version.
- A2ui Diff Computes a structural diff between two A2UI JSONL payloads: surfaces added/removed, components added/removed/changed (by id), data-model…
- A2ui Examples Returns one or more canonical A2UI JSONL examples matching a pattern (form, list, wizard, modal, chat, dashboard, checkout, typeahead…
- A2ui Prompt Generates a drop-in LLM system prompt that teaches the model to output valid A2UI JSONL: includes the basic-catalog component / function…
- A2ui Spec Returns A2UI protocol documentation for a given spec version and section.
- A2ui Validate Validates a JSONL A2UI payload against the basic catalog (or a custom catalog) and returns any errors, warnings, or info messages…