iss — Issuer

Location: payload · Format: string

Identifies the principal that issued the token, typically a URL or a stable identifier string. Verifiers should treat it as an index into a pre-configured, trusted key set rather than trusting it on its own — the claim value itself proves nothing until the signature checks out against that issuer's known keys.

Defined in RFC 7519 §4.1.1.

Decode a JWT and inspect its iss claim in the TokenPrism debugger — free, entirely in your browser.