Basic Authentication Header Generator

korinat.com

Privacy Policy

Privacy Policy

Updated 21 September 2026

This page describes the Basic Authentication Header Generator. Usernames, passwords, and headers are processed in your browser. There are no accounts, ads, cookies, or analytics scripts.

Credentials never leave the browser

The header is built on your device from the characters you type. They are not sent for encoding or storage. There is no upload. The Content-Security-Policy sets connect-src 'none', so the page cannot make network requests that would send your credentials elsewhere.

No accounts, no content logs

There are no user accounts. This Worker does not keep a server-side log of usernames, passwords, or headers, and it does not record page-view counters. Credentials are not written to cookies, localStorage, or sessionStorage, and they are not read from the address bar.

Hosting and connection data

This site is served from Cloudflare Workers. Cloudflare, Inc. is a recipient of technical connection data that is generated when your browser requests the page, including IP address, User-Agent, and TLS metadata. Cloudflare processes that data to deliver the site and operate its network. The contents of the username and password fields are not sent to Cloudflare for processing.

Typefaces (IBM Plex Sans and IBM Plex Mono) are self-hosted on this Worker. The page does not load fonts or other resources from Google or from other third-party origins.

The recipient is Cloudflare, Inc., 101 Townsend St, San Francisco, CA 94107, USA, as processor for hosting.

Legal basis: Article 6(1)(f) GDPR (legitimate interest in operating the site).

Retention: technical connection logs stay with the processor for as long as needed to deliver and secure the site. We do not keep our own content log of usernames, passwords, or headers.

Transfers to the United States: Cloudflare is a recipient in a third country. Transfers rely on the EU-US Data Privacy Framework and/or the European Commission’s standard contractual clauses.

Your rights under Articles 15–21 GDPR: access, rectification, erasure, restriction of processing, data portability, and objection to processing based on legitimate interests (Article 21 GDPR). Because we do not store a lasting identifier, we usually cannot link and delete individual past requests to you. You may lodge a complaint with a data protection supervisory authority.

Controller

Arne Schilling, Martin-Luther-Str. 12, 15517 Fürstenwalde/Spree, Germany, info@korinat.com

← Basic Authentication Header Generator