With changes to how JSON Web Tokens (JWTs) are processed, it’s now easier to extract data from JWTs generated by methods in the Auth.JWTUtil class. We also clarified what methods we support for a JWT depending on where it came from. And you can get more test coverage by mocking HTTP callouts when processing JWTs.
Where: These changes are available in Enterprise, Performance, Unlimited, and Developer Editions.
How: For more information about these changes, see the Auth Namespace section in Apex: New and Changed Items.