Referrer Policy Generator
Configure how much referrer information is sent with requests.
Last reviewed by the Radiatus Cloud team
Referrer Policy Generator
Configure the Referrer-Policy header to control privacy.
Going for ISO 27001, SOC 2, HIPAA or GDPR?
Radiatus runs end-to-end compliance & GRC programs.
Control what referrer information is sent
When a user follows a link or a page loads a resource, the browser can send the referring URL, which may leak information. This tool generates a Referrer-Policy header, so you can control how much referrer information your site sends.
Why referrer information leaks matter
By default, when a user navigates from your page or it loads an external resource, the browser may include the full referring URL, which can leak sensitive information: a path, query parameters, or even a token in the URL, sent to a third party. The Referrer-Policy header controls this, letting you send the full URL, just the origin, or nothing, depending on the destination. Restricting referrer information is a privacy and security measure that prevents URLs, which sometimes carry more than you realise, from being disclosed to sites you do not control. It is a straightforward header worth setting deliberately.
A tool, not legal advice
It runs entirely in your browser, so nothing you enter is uploaded and the generated output is yours to use, which matters when the input or result concerns your own site or organisation.
Related tools
- SOC 2 Evidence Readiness — Interactive checklist to gauge your SOC 2 evidence readiness.
- Privacy Policy Checker — Check if your policy covers standard requirements (GDPR/CCPA basics).
- Compliance Req Finder — Find which standards (ISO, SOC2, HIPAA) apply to your industry/region.
- Audit Readiness Planner — Plan your compliance audit timeline (SOC2, ISO) backwards from deadline.
Frequently Asked Questions
What information can the referrer leak?
The full referring URL, including its path, query parameters, or even a token in the URL, sent to whatever site the user navigates to or a resource loads from.
What does the Referrer-Policy header control?
How much referrer information the browser sends: the full URL, just the origin, or nothing, which you can vary by destination.
Why restrict referrer information?
Because URLs sometimes carry sensitive data, and sending them to third parties you do not control is a privacy and security risk. Restricting it prevents that disclosure.
Is a stricter policy always better?
A stricter policy is safer for privacy, but some analytics rely on referrer data, so choose a policy that balances your needs. The generator supports each option.
Is my input uploaded?
No. The generation runs entirely in your browser.
Privacy & Security
Local generation.
About This Tool
This tool runs entirely in your browser. No data is sent to any server, ensuring complete privacy. Simply use the interface above to get started — no registration or login required.
Disclaimer: This tool is provided "as is" without warranty of any kind. Results are for educational and utility purposes.
Related Tools
SOC 2 Evidence Readiness
ComplianceInteractive checklist to gauge your SOC 2 evidence readiness.
Privacy Policy Checker
ComplianceCheck if your policy covers standard requirements (GDPR/CCPA basics).
Compliance Req Finder
ComplianceFind which standards (ISO, SOC2, HIPAA) apply to your industry/region.