>
Powered by NumberTally Tools · free calculators
NumberTally ToolsNumberTally Tools

Password Generator

Create strong, random passwords instantly. Pick a length, choose your character sets, and get a password built with cryptographically secure randomness — plus an entropy-based strength rating.

Character sets

What the strength rating means

Strength is measured in bits of entropy: length × log₂(pool size). A 20-character password from all 94 printable characters has about 131 bits — far beyond what any brute-force attack can touch. Roughly: under 50 bits is weak, 50–80 is good, 80–110 is strong, and over 110 is excellent.

Entropy assumes the attacker knows your character sets but nothing else. Reused passwords, dictionary words, and personal details (birthdays, pet names) all destroy real-world security regardless of the bit count — use a unique random password per site.

How the randomness works

This generator uses crypto.getRandomValues(), the browser's cryptographically secure random number generator — the same source password managers rely on. It never uses Math.random(), which is predictable and unsuitable for secrets. Characters are drawn with rejection sampling so every character in the pool is equally likely, and each selected set is guaranteed at least one character in the result.

Frequently Asked Questions

Are my passwords sent anywhere?

No. Generation happens entirely in your browser. Nothing is transmitted, logged, or stored — when you close the tab, the password is gone.

What length should I use?

20 characters from the full set (the default) gives about 131 bits of entropy — excellent for any account. Many sites cap at 32–64 characters; longer is always at least as strong.

Why exclude look-alike characters?

0/O, 1/l/I are easy to confuse when reading a password aloud or typing it from paper. Excluding them slightly shrinks the pool but avoids costly typos.

Is a long passphrase better than a random password?

A 5-word random passphrase has roughly 65 bits of entropy — good, but less than a 20-character random password at 131 bits. Either beats a short password with substitutions like "P@ssw0rd".

Should I memorize these passwords?

No — use a password manager. The point of random passwords is that humans don't need to remember them, only the manager does.