Best for
- New account passwords
- Passphrases (diceware)
- Temporary test credentials
- Replacing reused passwords
Privacy
The generator runs in your browser. Generated passwords are not sent to our servers, and recent history stays only in the current browser session unless you copy it elsewhere.
Quick tips
- Use at least 16 characters or 4 random words for sensitive accounts.
- A diceware passphrase (e.g., correct-horse-battery-staple) is easier to remember but mathematically very secure.
- Use the "Exclude Ambiguous" option to avoid confusing characters like l, 1, O, and 0.
How to use this tool
- Choose between Password or Passphrase mode.
- Set your desired length or word count.
- Exclude ambiguous characters or tune symbols as needed.
- Copy the generated credential securely.
Common questions
What is a passphrase (Diceware)?
A passphrase is a sequence of random words chosen from a predefined list. Because words add significant length, a 4-word passphrase can be just as cryptographically secure as a complex string of random symbols, but much easier for a human to type and remember.
What is password entropy?
Entropy measures the unpredictability of a password in bits. Higher entropy means the password is harder to crack. For example, a 16-character password with letters, numbers, and symbols typically has over 100 bits of entropy, which is considered very strong.
Are generated passwords sent to a server?
No. The password generator runs client-side in the browser.
What password length should I use?
Use 14 or more characters for most accounts, and longer passwords for sensitive systems.