RFC 8725 · BEST CURRENT PRACTICE · 2020

JSON Web Token Best Current Practices

Overview

RFC 8725, “JSON Web Token Best Current Practices”, is a Best Current Practice document published in February 2020 by Y. Sheffer, D. Hardt, M. Jones. It updates RFC 7519. The canonical text is published by the RFC Editor.

Abstract

JSON Web Tokens, also known as JWTs, are URL-safe JSON-based security tokens that contain a set of claims that can be signed and/or encrypted. JWTs are being widely used and deployed as a simple security token format in numerous protocols and applications, both in the area of digital identity and in other application areas. This Best Current Practices document updates RFC 7519 to provide actionable guidance leading to secure implementation and deployment of JWTs.

Abstract as published in the RFC, via rfc-editor.org.

What “Best Current Practice” means

Documents the IETF community's recommended operational or procedural practice rather than a protocol specification.

Read this RFC

The canonical text of RFC 8725 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.

Relationships to other RFCs
This RFC updates
RFC 7519
Other RFCs from 2020

Who Is Online

In total there are 31 users online: 0 registered, 26 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: Applebot Googlebot Other Bot Other Crawler SemrushBot

Users active in the past 15 minutes. Total registered members: 354