Topic: - Correct JWT format. - Proper JWT algorithm in header - None MUST be rejected. - Do NOT put confident information in JWT body. - Strong signature.