Password Generator
Generate strong random passwords using the browser's cryptographic random source.
Generate strong random passwords with custom length and character classes. Free, offline, runs in your browser. Read more Show less
What makes a password strong?
Password strength is about unpredictability, not length alone. A password an attacker can guess from a list of common words, dates, and patterns is weak no matter how long it looks. A random password drawn uniformly from a large set of characters is strong because the search space is enormous.
Entropy measures the size of that search space, in bits. A 16-character password drawn from 94 printable ASCII characters has about 105 bits of entropy. Anything above 80 bits is beyond brute force with current hardware.
How to use
Pick a length. Enable the character classes you want. Toggle "Exclude ambiguous" to remove characters that look similar in many fonts (0/O, 1/l/I, and so on). Click Generate. The entropy indicator shows how strong the result is.
FAQ
Are these passwords safe to use?
Yes. They are generated using crypto.getRandomValues(), the same cryptographic random source used by TLS and key generation. Nothing is stored or transmitted.
Is my password sent anywhere?
No. Generation happens entirely in your browser.
Should I use symbols?
Symbols increase the search space, which is good. Some sites reject them, so keep a fallback. The bigger win is length: 20 lowercase letters is stronger than 12 mixed characters.
What about passphrases?
Four or five random dictionary words are easy to remember and hard to crack. This generator produces random characters, not dictionary words. A passphrase generator is on the roadmap.