Base64URL Encoder Decoder — Free Online URL-Safe Base64 Tool
Encode and decode Base64URL (URL-safe Base64) — used in JWTs, OAuth PKCE, WebAuthn, and URL-embedded binary data.
Jump to tool ↓Frequently Asked Questions
Base64URL: The JWT and OAuth Encoding Format
Base64URL is a minor but important variant of standard Base64 designed for use in URLs and filenames. Standard Base64's + and / characters are special in URLs and file systems, requiring percent-encoding. Base64URL solves this by substituting - for + and _ for /, and dropping the = padding.
You encounter Base64URL constantly in modern authentication: every JWT has three Base64URL-encoded sections separated by dots. OAuth PKCE's code_challenge is Base64URL(SHA256(code_verifier)). WebAuthn credential IDs are Base64URL-encoded. URL-safe token IDs in APIs frequently use Base64URL encoding.
This tool is especially useful for manually inspecting JWT payloads, debugging OAuth flows, and verifying PKCE challenge values. The encoding algorithm is identical to Base64 except for the two character substitutions and omission of padding.
Standards & References
Built and maintained by DevDecode. This tool processes your input in your browser; it is not uploaded for processing. Found an issue? Let us know.
Related Tools
Related Guides
Base64 in Python: Encode and Decode Strings and Files
How to Base64 encode and decode in Python with the base64 module — strings, bytes, files, and URL-safe variants — plus the bytes-vs-str gotcha that trips everyone.
EncodingHow to Base64 Decode on the Command Line
Step-by-step guide to Base64 decoding on Linux, macOS, bash, and PowerShell — with examples for strings, files, and URLs.