← Back to Security

JWT — 3 Parts, Signing, Revocation

Securitysecurity

The Question

What are the three parts of a JWT? How are they signed and revoked?

What a Strong Answer Covers

  • header.payload.signature
  • "stateless
  • "can't revoke
  • revocation strategy

Related Questions

  • Authentication vs Authorization
  • SQL Injection
  • CSRF
  • XSS
  • OAuth 2.0 — Authorization Code Flow

Practice This Question

Get AI-graded feedback on your answer with follow-up probes on weak points.

Take the Free Assessment
GrindQuestionsAITechnical interview assessment
TermsPrivacyAbout