CSP Builder
Build and risk-score Content-Security-Policy headers visually.
OpenGenerate RFC 4122 UUIDs. - runs entirely in your browser. Free, fast and private.
Generate random RFC 4122 v4 identifiers by default.
Create one UUID or a list for database seeding.
crypto.randomUUID or equivalent runs in your browser.
Copy individual IDs or the full list at once.
Need a primary key for a row, a request ID for logs, or a filename that will not collide? UUID Generator creates RFC 4122 identifiers in the browser so you can copy one (or many) without installing a package for a quick task.
UUIDs are great for distributed IDs where you cannot ask a central sequence. They are not secret tokens: do not treat a UUID as an unguessable capability URL by itself. For time-ordered IDs, consider UUID v7 elsewhere on the site when sortability matters.
Pitfall: pasting the same UUID into two environments and assuming uniqueness forever. Generate fresh values per record.
Tip: lowercase vs uppercase usually does not change identity, but keep a house style in APIs so diffs stay quiet.
Generation uses browser crypto randomness APIs where available. No ID list is requested from our servers when you click generate.
Processes data instantly with no server round-trips.
Your data never leaves your browser. Nothing is uploaded.
Works in any modern browser. Nothing to download or install.
No limits, no sign-up, no credit card required.
Works on desktop, tablet and mobile devices.
Beautiful in both themes. Your preference is saved.
Keyboard shortcut
Mint IDs for fixtures and manual inserts during development.
Attach a UUID to a support thread or log line.
Avoid collisions when exporting batches of artifacts.
Answers for this tool. For site-wide help, open the FAQ hub.
Generators and hashers run locally. Still, never paste production secrets into any site if your security policy forbids it.
Results live in page memory until you leave or clear. Favourites/history do not save password fields unless you explicitly store them in Vault.
When applicable, tools rely on Web Crypto or well-known libraries. Read on-page notes for exact algorithms (SHA-256, bcrypt-style notes, etc.).
After load, crypto helpers typically work offline. Confirm network independence for your threat model.
Browser CSPRNG (crypto.getRandomValues) powers secure generators when the tool states so.
Treat generated secrets like passwords - share only through approved password managers, never chat apps.
OneDevToolkit aids technical workflows; it is not a certification product. See Compliance for processing model language.
Always check you are on your real OneDevToolkit domain before entering sensitive material.
Contact us via Contact with responsible-disclosure details - do not include live production secrets.