Password Generator
Cryptographically-secure random passwords. Generate up to 50 at once, adjust strength and character pools.
<8/l@QH;;q=p3hoyCryptographically secure
Passwords are sampled from your chosen character pools using window.crypto.getRandomValues with rejection sampling for a truly uniform distribution — the same primitive browsers use for cryptographic keys. Nothing is transmitted; the entire process happens in your device.
Choosing a good length
For a mixed-case + digits + symbols password, 16 characters gives ~104 bits of entropy — far beyond current brute-force capability. Use 20+ characters for master passwords or long-term secrets; 8-12 is fine only for throwaway accounts.
How the Password Generator Works
This tool generates cryptographically secure random passwords. Instead of a standard pseudo-random function like Math.random(), it uses the browser's Web Crypto API (crypto.getRandomValues), which produces true randomness suitable for security purposes — making the resulting password's character sequence effectively unpredictable.
Based on the settings you choose — length, uppercase, lowercase, numbers, symbols — the tool builds a pool of allowed characters, then randomly selects a character for each position in the password. To ensure strength, it also checks that every selected category is represented at least once (e.g., at least one number, one symbol) if required. Password strength is measured using entropy — the more varied the character pool and the longer the password, the higher the entropy, and the harder it is to crack through brute force.
This tool is used for creating strong, unique passwords for online accounts, Wi-Fi networks, or anywhere a weak or reused password would be a security risk. Because generation happens entirely in the browser and the password is never stored or transmitted, it's also private by design.