Referrer-Policy

HTTP response header

Referrer-Policy is a security header that can (and should) be included on communication from your website's server to a client. The Referrer-Policy tells the web-browser how to handle referrer information that is sent to websites when a user clicks a link that leads to another page or website

Header usage statistics

Referrer-Policy response header information and usage statistics.
Websites using header Referrer-Policy4,565,821
Percentage of websites that use Referrer-Policy header5.57%
Total discovered header values538
Header uses directivesYes
Header values are unique or randomNo
Most popular in the country United States

Referrer-Policy directives (8 total)

  • no-referrer
  • no-referrer-when-downgrade
  • origin
  • origin-when-cross-origin
  • same-origin
  • strict-origin
  • strict-origin-when-cross-origin
  • unsafe-url

Referrer-Policy Directives

Referrer-Policy directives value information and usage statistics
DirectiveShareWebsites countUnique Values
strict-origin-when-cross-origin39.02%1,781,7391
no-referrer-when-downgrade28.90%1,319,5411
same-origin11.57%528,0951
origin9.02%412,0501
no-referrer6.11%278,8041
origin-when-cross-origin3.81%174,1161
strict-origin3.11%141,9251
unsafe-url1.88%85,7511

Referrer-Policy header usage distribution by website rank



Geographical Distribution

Header usage distribution by websites across the globe.



Websites utilizing Referrer-Policy

List of websites that use Referrer-Policy header
DomainCountryRankContacts
github.com United States21
www.cloudflare.com United States27
www.pinterest.com United States32
www.afternic.com Netherlands52
fonts.adobe.com United States75
login.microsoftonline.com United States83
See full domain list

Common header values

List of top common Referrer-Policy header values
Header valueValue prevalence
strict-origin-when-cross-origin36.21%
no-referrer-when-downgrade27.51%
same-origin11.37%
origin8.91%
no-referrer5.33%
origin-when-cross-origin2.98%
strict-origin2.97%
unsafe-url1.85%
no-referrer-when-downgrade, strict-origin-when-cross-origin1.08%
origin-when-cross-origin, strict-origin-when-cross-origin0.77%
no-referrer, strict-origin-when-cross-origin0.61%
: no-referrer-when-downgrade, strict-origin0.09%
no-referrer, same-origin0.03%
value0.02%
yes0.02%
default, no-referrer-when-downgrade0.02%
'same-origin'0.02%
same-origin, strict-origin-when-cross-origin0.01%
SAMEORIGIN0.01%
no-referrer, strict-origin-when-cross-origin, no-referrer-when-downgrade0.01%