I need a strong, random password
Reused and guessable passwords are the main way accounts get breached. Generate a unique, random one per account.
To create a strong password, use a generator: pick a length (16+ characters is a good default) and include uppercase, lowercase, numbers and symbols for maximum strength. Our Password Generator makes it in your browser using secure randomness, and it's never transmitted or stored. Then save it in a password manager rather than reusing it.
4 tools for this
Each one is free, private and runs in your browser. No sign-up, no watermark.
Password Generator
Generate strong, crypto-secure passwords and memorable passphrases in your browser: control length, character sets, look-alikes and guaranteed classes, with a live entropy meter. Nothing is uploaded.
Hash Generator
Compute MD5, SHA-1, SHA-256, SHA-384 and SHA-512 checksums of any text or file at once, generate HMAC signatures with your own key, and verify a download against its expected hash, all in your browser, nothing uploaded.
UUID Generator
Generate secure UUIDs instantly, random v4, time-ordered v7, or the nil UUID. Bulk-generate up to 1,000, copy or export as TXT/CSV, all in your browser.
NanoID Generator
Generate secure, URL-safe Nano IDs in your browser with a live size slider, alphabet presets, a custom alphabet, bulk output up to 1,000 and a real-time collision-odds estimate. Nothing is uploaded.
How to fix it
Follow these steps and you'll have it sorted in a couple of minutes.
- 1
Open the Password Generator
It runs entirely in your browser. The generated password is never sent anywhere.
- 2
Set the length and character types
Aim for at least 16 characters and enable uppercase, lowercase, numbers and symbols.
- 3
Generate and copy
Create the password and copy it. Regenerate until you get one you're happy to use.
- 4
Store it in a password manager
Save it in a manager so you don't have to remember it, and never reuse it across sites.
- Reusing one 'strong' password everywhere: a single breach then exposes every account. Use a unique one per site.
- Swapping letters for look-alikes (P@ssw0rd) and thinking it's strong. Length and true randomness matter far more.
- Storing passwords in a plain notes file instead of a proper password manager.
Frequently asked questions
More problems we solve
Ran into one of these too? Here's the fix.
- I need to password-protect a PDF (or remove a password)Sending something confidential? Lock it with a password. Received a protected file you own? Remove the password so you can work with it.
- My JSON is invalid and I can't find the error'Unexpected token' almost always means one stray character. A validator points straight at it so you're not hunting by eye.
- My website needs a robots.txt fileControl what search engines crawl, and avoid the classic mistake of accidentally blocking your entire site.
Keep exploring
Problems we solve
From the blog
Common tasks
Ready? Start with Password Generator
Free, private and instant: everything runs in your browser.