realm_access — Realm Access
Location: payload · Format: json · Vendor: Keycloak
An object with a roles array listing realm-level roles granted to the subject — roles that apply across every client in the Keycloak realm, as opposed to the per-client roles in resource_access.
Defined in Keycloak server administration guide.
Decode a JWT and inspect its realm_access claim in the TokenPrism debugger — free, entirely in your browser.