A Google disavow file is a plain text file listing the domains or URLs whose links you want Google to ignore, one per line, with whole domains prefixed by domain:. Most sites should never upload one. Google neutralises manipulative links automatically, and disavowing good links is slow to notice and slower to undo. Use it when you have a manual action for unnatural links, or when you know links were bought or built at scale and cannot get them removed. The builder below formats your list correctly and flags anything malformed.
Free tool
Disavow file builder
Paste the domains or URLs you have decided to disavow, one per line, in any format. The tool strips protocols, removes www, drops duplicates, flags anything malformed, and returns a correctly formatted file ready to upload. Everything runs in your browser and nothing is sent anywhere.
Upload at Search Console, Disavow Links tool. Uploading replaces any previous file, so always include everything you want disavowed, not just the new entries.
Should you disavow at all?
This is the question that matters most, and the answer is no far more often than the SEO industry implies. Google’s own position is that most sites do not need a disavow file, because the link systems already ignore links they do not trust rather than penalising sites for them.
| Your situation | Disavow? | Measurement (how to confirm) | What to do instead |
|---|---|---|---|
| Manual action for unnatural links | Yes | Manual Actions report in Search Console names a link issue | Disavow, then file a reconsideration request |
| You or an agency bought links at scale | Usually yes | You have invoices, outreach records or a link-building contract | Remove what you can, disavow the rest |
| Traffic dropped during a link spam update | Maybe | Drop date sits inside a confirmed link spam rollout | Audit first, disavow only what you can justify |
| A tool flagged toxic links | No | Toxicity scores are vendor estimates, not Google signals | Ignore the score, review the links by hand if worried |
| Traffic dropped during a core update | No | Site-wide drop matching a core rollout | Content quality work, not link work |
| You see spammy links you never built | No | Random foreign or scraper domains linking to you | Nothing. This is normal and Google ignores them |
The fourth row is the most common mistake I see in audits. Third-party toxicity scores are useful for sorting a large profile into a review order, but they are one vendor’s opinion, not a Google signal. Disavowing purely on a score routinely removes legitimate links from directories, local press and small niche sites that were doing real work.
Before you disavow anything, confirm the cause of your drop. If the date matches a core update rather than a link update, links are not your problem. Run it through the date checker first, and read the seven causes of a drop with no update if nothing matches.
Disavow file syntax rules
The format is simple and unforgiving. A single malformed line will not break the file, but it will be silently ignored, which means you believe something is disavowed when it is not.
- Plain text file, .txt extension, UTF-8 or 7-bit ASCII encoding. Why: A .docx or .csv will be rejected. Exporting from a spreadsheet often adds quotes and commas that break every line.
- One entry per line, maximum 100,000 lines and 2MB. Why: Almost no site approaches these limits. If you are near them, the problem is bigger than a disavow file.
- Whole domains use the prefix:
domain:example.com. Why: This covers the domain and all its subdomains and pages. It is the right choice in nearly every case, because a spam site rarely has one bad page. - Individual pages use the full URL with protocol:
https://example.com/bad-page/. Why: Only use this when a domain is otherwise legitimate and one page is the problem, such as a genuine publisher hosting a paid post. - Comments start with
#. Why: Use them to record dates and reasons. Six months later you will not remember why a domain is on the list, and neither will the next person. - Do not include
www.on domain entries. Why: The domain directive already covers subdomains, sodomain:example.comcovers www and everything else.
A correctly formatted example
# Disavow file for example.com
# Last updated 2026-09-03 by Kawsar Ahmmed
# Reason: manual action for unnatural links, March 2026
# Paid guest post network, outreach attempted 2026-08-12, no response
domain:guest-post-network.com
domain:seo-articles-daily.net
domain:content-placement-hub.org
# Expired domain PBN, same registrant and template across all four
domain:tech-review-daily.info
domain:gadget-insights-hub.info
# Legitimate publisher, single paid post only
https://real-news-site.com/sponsored/our-brand-review/
Note the structure. Grouped by reason, dated, with removal attempts recorded. If this file ever supports a reconsideration request, those comments are the evidence that you made a genuine effort, which is what the reviewer is looking for. The reconsideration request guide covers what else that submission needs.
How to decide what goes in the file
Work from your own knowledge of what was built, not from a tool’s score. Ask three questions about each link and disavow only when the answers are clear.
- Did you or someone working for you pay for or arrange this link? Why: Links you built to manipulate rankings are the ones the policy is about. If you paid for it, it belongs in the file.
- Does the linking page exist to serve readers or to place links? Why: A site whose every post is a thin article with three outbound commercial links is a link placement operation regardless of its metrics.
- Would you be comfortable showing this link to a Google reviewer and explaining how it came about? Why: This is the actual standard for a reconsideration request, so it is a useful test now.
When you are genuinely unsure about a link, leave it out. An unnecessary disavow costs you a real link permanently. A missed spam link is usually already being ignored by Google anyway. The full audit method, including how to pull and sort your link profile, is in the backlink audit and disavow guide.
Uploading it
- Open the Disavow Links tool in Search Console and select the correct property. Why: Domain and URL-prefix properties are separate. Uploading to the wrong one does nothing at all.
- Understand that uploading replaces the previous file entirely. Why: This is the most common operational error. Always upload the complete list, never just the new additions, or you will silently un-disavow everything from before.
- Keep a copy in version control or a dated folder. Why: Search Console lets you download the current file, but a local history with dates and reasons is far more useful during a reconsideration.
- Expect it to take weeks. Why: Google has to recrawl each linking page before the directive applies. Nothing happens the day you upload.
If your disavow is part of a manual action recovery, the reconsideration request goes in after the file is uploaded and removal attempts are documented. If it is algorithmic, there is nothing to submit and you wait. Timelines for both are in how long recovery takes, and the difference between the two situations is explained in manual action versus algorithmic penalty.
Frequently asked questions
What is the correct disavow file format?
A plain .txt file in UTF-8 or 7-bit ASCII, one entry per line. Whole domains take the prefix domain:example.com. Individual pages take the full URL including https. Lines starting with # are comments. Maximum 100,000 lines and 2MB.
Should I disavow domains or individual URLs?
Domains, in nearly every case. A site that produced one manipulative link usually produced more, and the domain directive covers all pages and subdomains. Use a single URL only when an otherwise legitimate site hosts one problem page.
Can disavowing links hurt my rankings?
Yes. Disavowing legitimate links removes their value, and reversing it means uploading a corrected file and waiting weeks for Google to recrawl. This is why disavowing on the basis of a tool’s toxicity score alone is risky.
How long does a disavow file take to work?
Weeks to months. Google applies the directive as it recrawls each linking page, so there is no immediate effect. For a manual action, the timeline is driven by the reconsideration review instead, which is usually days to a few weeks after submission.
Do I need a disavow file if I have no manual action?
Usually not. Google’s link systems ignore links they do not trust rather than penalising the target site. The main exception is a site with a known history of bought or scaled link building, where cleaning up the profile is part of a wider recovery.
Does uploading a new disavow file replace the old one?
Yes, completely. The new file replaces the previous one, so it must contain every entry you still want disavowed. Uploading only your new additions silently removes all earlier entries.
Not sure whether links are actually your problem?
Most sites that ask about disavowing turn out to have a content or technical cause instead. Send your Search Console access and within 48 hours I will tell you whether links are involved at all, before you disavow anything you cannot get back. Free, no obligation.
Get free recovery auditSources: Google Search Central documentation on the disavow links tool, link spam policies and reconsideration requests; Google guidance that most sites do not need a disavow file; disavow decision rubric and operational errors observed across client engagements, 2017 to 2026.