Interface: JWTVerifyGetKey()\

September 5, 2026 ยท View on GitHub

๐Ÿ’— Help the project

Support from the community to continue maintaining and improving this module is welcome. If you find the module useful, please consider supporting the project by becoming a sponsor.

Resolves a JWT verification key. No token components have been authenticated when this function is called.

See

createRemoteJWKSet to verify using a remote JSON Web Key Set.

Type Parameters

Type ParameterDefault typeDescription
KeyType extends CryptoKey | Uint8ArrayCryptoKey | Uint8ArrayType definition of the keys the function resolves. Narrowing it is what lets ResolvedKey.key be inferred at the call site.

โ–ธ JWTVerifyGetKey(protectedHeader, token): JWK | KeyObject | KeyType | Promise<JWK | KeyObject | KeyType>

Resolves a key for an unverified token. Throw if no suitable key can be resolved.

Parameters

ParameterTypeDescription
protectedHeaderCompactJWSHeaderParametersJWE or JWS Protected Header.
tokenFlattenedJWSInputThe consumed JWE or JWS token; none of its components have been verified.

Returns

JWK | KeyObject | KeyType | Promise<JWK | KeyObject | KeyType>