Explanation
How UUID Generator works
The UUID generator creates Universally Unique Identifiers directly in the browser. UUID v4 is based on 122 bits of cryptographic randomness and is the most widely used UUID type for applications without a time reference.
The standard format uses hyphens: 8-4-4-4-12 hexadecimal characters (e.g. 550e8400-e29b-41d4-a716-446655440000). Bits 48-51 encode the version (4), bits 64-65 the variant (10). You can also generate compact UUIDs without hyphens or in uppercase.
Generation uses the browser's Web Crypto API (crypto.randomUUID or crypto.getRandomValues) for cryptographically secure random values.
Common mistakes
- Using a UUID as a security feature: UUIDs are unique, but not secret. They are not suitable as access tokens or password substitutes.
- Treating uniqueness as guaranteed: UUIDs are unique with astronomically high probability, but offer no mathematical guarantee. Absolute uniqueness requires central registration.
- Using UUID v4 for sortable records: UUID v4 has no temporal order. For sortable IDs, UUID v7 (RFC 9562) or ULID are better suited.
- Using UUIDs as a database index without considering performance: Random UUIDs can cause fragmentation in B-tree indexes. UUID v7 or sequential IDs perform better as primary keys.
Limits of this tool
- UUID v4 only — no support for v1 (time-based), v5 (name-based) or v7 (time-ordered).
- Generated locally, no central registration or duplicate check.
- Not suitable as a security token — use dedicated crypto tokens for that.
- No validation of entered UUIDs — generation only.
Sources
- RFC 9562: Universally Unique IDentifiers (UUIDs). IETF, 2024. Defines UUID v7 and updates UUID v4.
- RFC 4122: A Universally Unique IDentifier (UUID) URN Namespace. IETF, 2005. Original definition of UUID v4.
- Web Crypto API: crypto.randomUUID() — W3C/MDN. Native browser API for UUID v4 generation.