Decodes an ID token's payload claims WITHOUT verifying its signature — signature trust stays
with the gateway/services, so use the result for display only (name/email/picture), never for
an authorization decision. Returns undefined when the token has no decodable JSON payload
segment.
Decodes an ID token's payload claims WITHOUT verifying its signature — signature trust stays with the gateway/services, so use the result for display only (name/email/picture), never for an authorization decision. Returns undefined when the token has no decodable JSON payload segment.