<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Jwt on ilham.dev</title><link>https://ilham.dev/tags/jwt/</link><description>Recent content in Jwt on ilham.dev</description><generator>Hugo -- gohugo.io</generator><language>en</language><lastBuildDate>Sun, 27 Sep 2026 00:00:00 +0700</lastBuildDate><atom:link href="https://ilham.dev/tags/jwt/index.xml" rel="self" type="application/rss+xml"/><item><title>How I check a JWT when an API login looks broken</title><link>https://ilham.dev/posts/how-to-read-and-verify-jwt/</link><pubDate>Sun, 27 Sep 2026 00:00:00 +0700</pubDate><guid>https://ilham.dev/posts/how-to-read-and-verify-jwt/</guid><description>A JWT is one of those strings that looks scary the first time you see it. It often appears in a login response, browser storage, or an API request header:</description></item></channel></rss>