intermediateSpring Security336 of 469

What is JWT? What is the structure of a JWT token?

Tests whether you know the three dot-separated Base64Url parts -- header (algorithm/type), payload (claims, e.g. sub, exp, roles), and signature (verifies integrity) -- and that the payload is only encoded, not encrypted, so it must never hold sensitive data.

Ready to master this question?

Generate a complete walkthrough — background, the full answer in plain language, a working code example explained line by line, a real-world scenario, common mistakes, and how this same question gets asked in different ways.

Sign in to generate a response

Next Step

← Back to all Spring Boot & Microservices questions