LTI 1.3 Launch Handshake Simulator (2D)
A flat top-down view of the LTI 1.3 / OIDC launch handshake: signed JWT packets arc between an LMS Platform and an external Tool on a 2D canvas, with a live modular signature-verification formula, tamper injection, and a stale-JWKS-key failure mode you can trigger and clear yourself. Drag to pan, scroll to zoom.
Every time a student opens a third-party activity from inside their LMS, an LTI 1.3 launch fires an OpenID-Connect handshake behind the scenes: the LMS Platform signs a JWT describing who the user is and what course they're in, and the external Tool must verify that signature before it trusts the request. This 2D companion view renders that traffic flat and top-down — launch packets arc between a Platform node and a Tool node in concurrent waves, colored green when the signature check passes and red when it fails. A tamper-probability slider corrupts signatures in transit, and a stale-JWKS toggle reproduces the most common real-world integration bug: a Tool that never refreshed its cached copy of the Platform's rotated public key, so every launch is rejected until the cache is refreshed. Live counters track in-flight packets, verified vs rejected totals, success rate and average round-trip latency, and the last packet's actual modular signature arithmetic is shown so the accept/reject logic is never a black box. Drag to pan the stage and scroll to zoom in on individual packets.
A flat, top-down 2D companion to the LTI 1.3 launch handshake: signed JWT packets arc between an LMS Platform and an external Tool, with a live modular signature-verification formula, tamper injection, and a stale-JWKS-key failure mode you can trigger and clear yourself. Drag to pan, scroll to zoom.
2D · HTML5 Canvas 2D · 60 FPS target · runs fully client-side, no install