Generator Tools

Password Generator

Create strong, random passwords or easy-to-type passphrases. Everything is generated on your device with a cryptographically secure random source and is never sent anywhere.

  • Runs in your browser
  • No sign-up
  • Free to use

How to use Password Generator

  1. Choose Password for a random string, or Passphrase for a set of random words.
  2. Set the length and the character types or word options.
  3. Check the strength meter, which shows the estimated entropy in bits.
  4. Copy the result, or generate several at once and pick one.

Password Generator features

Cryptographically secure

Uses the Web Crypto API, the same random source browsers use for encryption keys.

Passwords or passphrases

Random characters for maximum strength, or random words that are easier to type and remember.

Full control

Length from 6 to 128 characters, with upper case, lower case, digits and symbols.

Avoid look-alike characters

Optionally exclude characters such as l, 1, I, O and 0 that are easily confused.

Strength in bits

An honest entropy figure rather than a vague label.

Bulk generation

Create up to 50 passwords at once.

When to use Password Generator

  • Creating a unique password for each new account.
  • Generating a master password or Wi-Fi password that is long but typeable.
  • Producing temporary passwords for new users or test accounts.
  • Creating API secrets and database passwords.

Password Generator FAQ

How long should a password be?

For online accounts, at least 14–16 random characters, or a passphrase of five or more random words. For anything protecting encrypted data offline, aim for 80 bits of entropy or more.

What does entropy in bits mean?

It measures how many guesses an attacker would need: each extra bit doubles the number. A random 16-character password using all character types has about 105 bits, far beyond what can be brute-forced.

Are passphrases as secure as random passwords?

Yes, when the words are chosen randomly. Each word from the 1,451-word list used here adds about 10.5 bits, so six words give roughly 63 bits, and they are much easier to type on a phone.

Are the generated passwords stored or sent anywhere?

No. They are generated in your browser and exist only on your screen until you copy them.

Should I reuse a strong password?

No. If one site is breached, a reused password exposes every account that shares it. Use a password manager to keep a unique password for every site.

What makes a password strong

Strength comes from unpredictability, not complexity rules. A password made by a person, even with substitutions like P@ssw0rd, follows patterns that cracking tools try first. A password chosen at random has no pattern: the only way to find it is to try every possibility, and with enough length that is impossible in practice.

This generator uses rejection sampling when picking characters so that every character in the chosen set is equally likely; a naive approach that takes a random number modulo the set size would slightly favour some characters. The same care applies to passphrases, where each word is drawn uniformly from the list.

The best place for a strong password is a password manager. It lets you use a different random password for every account without having to remember any of them.

Other useful tools