I have an API endpoint which accepts an incoming JWT bearer token for authorisation purposes. I\'d like to verify it\'s not been tampered with in any way prior to using it.