Password generator
Create strong random passwords and see how strong they are. Free, private: nothing leaves your device.
Passwords are made and checked in your browser. Nothing you generate or type here is sent, saved, or logged.
A password generator you can trust
Private by design
Generated and rated in your browser. Nothing is uploaded, stored or logged.
Secure randomness
Uses the browser's cryptographic random generator, not predictable pseudo-random numbers.
Full control
Length from 4 to 128, any mix of letters, numbers and symbols, with an option to skip look-alikes.
Live strength meter
See estimated entropy and crack time as you change settings, or check a password you already have.
Instant
A new password appears the moment you change a setting. No page reloads.
One-click copy
Copy straight into your password manager or sign-up form.
Generate a strong password in three steps
- 1
Set the length
Drag the slider to choose 4 to 128 characters. Sixteen or more is a good default for accounts you care about.
- 2
Pick what goes in
Tick lowercase, uppercase, numbers and symbols, or skip look-alike characters like I, l, 1, O and 0 if you'll read it out loud or type it by hand.
- 3
Copy it into your password manager
Use Generate new for another one, then Copy. The strength meter shows the estimated entropy and how long a guess attack would take.
Where a random password helps
Reused and guessable passwords cause most account break-ins. A long random password for every account fixes that, and your password manager remembers it for you.
New account sign-ups
Make a unique password for every site so one breach can't unlock your other accounts.
Replacing a weak password
Swap out an old, reused or guessable password after a breach notice or a security check-up.
Shared and work accounts
Generate long credentials for team tools, Wi-Fi networks and service accounts.
Master passwords
Create a long, random master password for your password manager or encrypted drive.
Frequently asked questions
Is it safe to generate a password on this page?
+
Yes. The password is made in your browser using your device's secure random number generator (crypto.getRandomValues). It is never sent to a server, saved, or logged, and there is no account. You can load the page, turn off your internet, and it keeps working.
How long should my password be?
+
Use at least 16 characters for important accounts, and 20 or more for email, banking and your password manager's master password. Length adds more strength than fancy symbols: every extra character multiplies the number of guesses an attacker needs.
Are the passwords truly random?
+
They come from the browser's cryptographically secure random generator, not Math.random(). The tool also avoids the common bias of using a remainder on a random number, so each character is picked evenly from its pool. To make sure every type you ticked shows up, one character from each type is placed first and the rest are drawn from the combined pool, then everything is shuffled.
How does the password strength checker work?
+
It estimates entropy from the password's length and the kinds of characters used, then lowers the score for patterns attackers try first: very common passwords, repeated characters, and straight runs like abc or 123. It's an estimate to help you compare passwords, not a guarantee. Checking a password you already use happens only on this page.
Should I check my real password here?
+
Nothing you type leaves your browser, so it's safe from this tool's side. As a habit, though, it's better to check a similar password or generate a new one and keep your real one for the site that needs it.
Why skip look-alike characters?
+
Characters like I, l and O are easy to confuse with the numbers 1 and 0. Skipping them makes a password easier to read aloud or type from a printed page, at a small cost in strength.
Does the tool remember my passwords?
+
No. Once you generate a new one or close the tab, the old one is gone. Save the ones you want to keep in a password manager.
Generate a strong password now
Free, no account needed.