A method and system for protecting publicly viewable web client reference to network accessible data includes receiving a request for a server side resource from a client. The request is triggered upon loading of a page having a component that needs to access server side resource, at the client. A token for the server side resource is generated at the server using a resource-mapper, the resource-mapper identifying the server side resource that is to service the request from the client. The generated token and contents for the component are returned to the client, the generated token identifying an arbitrary path identifier to the server side resource that is viewable to the client, the arbitrary path identifier being interpreted by the resource-mapper to enable rendering of the content for the component at the client, such that the arbitrary path identifier protects identification information associated with the server side resource.
展开▼