JWE encrypt & decrypt — JSON Web Encryption

Encrypt payloads into five-part JWE compact tokens and decrypt them again, entirely in your browser. Supports the standard key-management algorithms — RSA-OAEP, ECDH-ES, AES key wrap, direct symmetric keys, and PBES2 password-based encryption — with AES-GCM and AES-CBC/HMAC content encryption.

Remember: a normal signed JWT is not encrypted — anyone can read its claims. JWE is what you use when the payload itself must stay confidential. See JWS vs JWE explained or decode a signed token.