Argon2
Derive a key or password hash using Argon2id.
Derive a key or hash from a password with Argon2id. Free, offline, runs entirely in your browser. Read more Show less
What is Argon2?
Argon2 is the winner of the Password Hashing Competition (2015) and the current recommendation for password storage. It is memory-hard, GPU-resistant, and side-channel resistant in its Argon2id variant. It is standardized in RFC 9106 and used by Bitwarden, 1Password, and many modern services.
This tool uses Argon2id, the hybrid variant that balances resistance to both side-channel and GPU attacks. It produces either a raw derived key (for encryption) or an encoded hash string that can be stored directly in a database.
How to use
Enter the password. Provide a random salt (at least 8 bytes, longer is better). Set memory (in KiB), iterations, and parallelism. Choose output length and format.
Recommended defaults for interactive login: 64 MiB memory (65536 KiB), 3 iterations, parallelism 1. Increase memory first if you want more security.
FAQ
Argon2id vs Argon2i vs Argon2d
Argon2id combines Argon2i (side-channel resistant) and Argon2d (GPU-resistant). Use Argon2id unless you have a specific reason. This tool only offers Argon2id.
What parameters should I use?
OWASP recommends 19 MiB memory, 2 iterations, parallelism 1 as a minimum, or 46 MiB and 1 iteration for higher security. Higher memory is the strongest lever.
What is the encoded format?
The standard PHC string format: $argon2id$v=19$m=...,t=...,p=...$salt$hash. This is what you would store in a database column alongside a user record.
Is this done locally?
Yes. hash-wasm runs Argon2 in a Web Worker. Nothing is uploaded.