Core - 15.14. Signing and Encryption Order

Nat Sakimura
It may be worthwhile to point out that all JWE algorithms are integrity protecting as well.


NOTE: All encryption algorithms used in JWE are AEAD algorithms that protects integrity so there is no need to oversign the encrypted payload separately.

