What Makes a Strong Password
A strong password is long, mixes uppercase, lowercase, digits, and symbols, and is never reused across services. For example, with a 91-character set (uppercase + lowercase + digits + symbols), an 8-character password has about 91^8 (roughly 4.7 quadrillion) possible combinations, while a 20-character password jumps to about 91^20 — an astronomically larger number that makes brute-force attacks infeasible within any practical timeframe. Security guidelines widely recommend three principles: make it long, make it complex, and never reuse it.
How to Use
Choose character types
Toggle uppercase, lowercase, digits, and symbols under "Character Types." There are 29 individual symbols you can enable or disable one by one under "Symbol Settings," so you can match a service's specific symbol restrictions.
Set the length
Use the slider to pick a length between 8 and 50 characters (default: 20). Passwords regenerate instantly whenever you change any setting.
Copy and use it
Pick any of the 50 generated passwords and click "Copy" on that row. You can also use "Copy All" to copy every password at once, or the "CSV" button to download all 50 as a file.
Features
- Cryptographically secure randomness via the Web Crypto API (crypto.getRandomValues)
- 29 individual symbols you can toggle on/off, matching per-service symbol restrictions
- Generates 50 passwords at once; hit "Regenerate" as many times as you like
- Bulk CSV download support
- Everything runs in your browser — nothing is ever sent to a server
Frequently Asked Questions
Are generated passwords sent to a server?
No. This tool generates passwords entirely in your browser using the Web Crypto API (crypto.getRandomValues). Neither your settings nor the generated passwords are ever sent to a server.
What length and settings are recommended?
A common recommendation is at least 12 characters, mixing uppercase, lowercase, digits, and symbols. This tool defaults to 20 characters with all character types enabled, which already provides strong security.
Can I exclude ambiguous characters like l/1 or O/0?
Yes. Turn on "Exclude ambiguous characters" to remove 1, l, |, 0, o, and O from generated passwords.
Does this tool generate memorable passphrases?
No. This tool focuses on generating random strings of letters, digits, and symbols rather than word-based passphrases. We recommend managing the generated random strings with a password manager.