Learn › JWT claims reference

realm_access — Realm Access

Location: payload · Format: json · Vendor: Keycloak

An object with a roles array listing realm-level roles granted to the subject — roles that apply across every client in the Keycloak realm, as opposed to the per-client roles in resource_access.

Defined in Keycloak server administration guide.

Decode a JWT and inspect its realm_access claim in the TokenPrism debugger — free, entirely in your browser.