Referrer-Policy Builder
Pick a Referrer-Policy value with a description of what it does.
Default in modern browsers. Recommended.
Referrer-Policy: strict-origin-when-cross-originAll values
| Value | Description |
|---|---|
| no-referrer | Never send Referer. |
| no-referrer-when-downgrade | Don't send when HTTPS → HTTP. |
| origin | Send only origin. |
| origin-when-cross-origin | Origin for cross-origin, full URL for same-origin. |
| same-origin | Only on same-origin. |
| strict-origin | Origin only, and not on HTTPS → HTTP. |
| strict-origin-when-cross-origin | Default in modern browsers. Recommended. |
| unsafe-url | Always full URL (not recommended). |
About this tool
All eight standard Referrer-Policy values with one-line explanations and recommended defaults.