Password Generator

Cryptographically secure passwords, memorable passphrases and PINs from your browser's own random source. Batch-generate and pick your favorite. Nothing is transmitted or logged — the password only ever exists on your screen.

Runs locally in your browser

Guides

FAQ

How is this safer than an online generator?

The password is created by crypto.getRandomValues() inside your browser tab — no server ever sees it. Most "online generators" can't prove that; here it's architectural.

What does the strength meter measure?

Entropy in bits: length × log2(character pool). 16 chars over a 92-char pool is ~104 bits — beyond any brute-force budget.

Should I include symbols?

Yes if the site allows them — but length matters more than complexity. A 20-char letters-and-digits password beats a 10-char symbol salad.

Are passphrases really secure?

Yes. Each word is drawn from a 2048-word list (11 bits of entropy per word), so a 5-word passphrase is ~55 bits and 6 words ~66 bits — comparable to a random 10–11 character password, but far easier to type and remember. This is the xkcd “correct horse battery staple” idea, done with crypto-secure randomness.

Why exclude ambiguous characters?

0/O and 1/l/I look identical in many fonts. Excluding them costs a little entropy but saves real login failures when you have to read the password aloud or type it from a printed sheet.

X