Cryptographic test bench
Produce the counterparty's artifact, and integrate on your own schedule.
Sign, verify, encrypt and decrypt real JOSE and OpenPGP artifacts with keys entirely under your control. Your handler enters integration before the counterparty is ready, and faults surface days ahead of release rather than during it. Nothing about release day is a first.
Or take a token apart now. No account required.
Sign · JOSE · ES256
PASSclaims.json
eyJhbGciOiJFUzI1NiIsImtpZCI6ImJpbGwtMDIifQ.eyJzdWIiOiJhY2N0Xzg4MTIiLCJzY29wZSI6ImJpbGxpbmcucmVhZCJ9.MEUCIQDf3s9Xk2v0oQ7pR1mYb8cN
01 · Emit
Take the counterparty's side
Generate the signed or encrypted payload your service expects to receive, including the malformed variants no library will produce for you.
02 · Verify
Take the recipient's side
Present what your service produced and receive a verdict for each layer: structure, key, signature, freshness. Not a single yes or no.
03 · Keep
Settle them into fixtures
Keep key sets, cases and expected verdicts in a project, and CI runs exactly what runs on your machine.
Protocols
SEE ALL →JOSE
JWT JWS JWE
OpenPGP
PGP GPG .gpg .asc
X.509 / mTLS
IN PIPELINE
COSE
IN PIPELINE