JWTs have 3 parts:
Is it possible to
Not encrypting the token means that other external services can read and validate that the token is in fact authentic without having access to your private key. (They would only need the public key)