Generate strong random passwords with your browser's secure random number generator. Choose length and character types, with nothing stored or sent.
Uses crypto.getRandomValues with unbiased selection. Math.random is never used.
If symbols are on, a 16-character password always contains one, because one character per type is placed first and the result is shuffled.
Uppercase, lowercase, numbers, symbols, and an option to exclude the ambiguous characters O, 0, I, l, and 1.
The password is made on your device, shown only on screen, and discarded when you change a setting or leave.
When you use Password Generator, your data never leaves your browser. All transformations execute in-memory on your local machine with zero server uploads. Web assets are downloaded to run the tool, but your input data is never transmitted.
No. It is generated in your browser and never uploaded or stored. The page does download the code needed to run the tool.
They come from your browser's cryptographically secure random generator, using unbiased selection and a secure shuffle. That is the same source browsers use for cryptographic keys.
It is a rough description based on length and character variety (up to length x log2 of the pool size, in bits). It is not a security certification, and a longer password is always stronger.
Excluding ambiguous characters removes exactly O (capital o), 0 (zero), I (capital i), l (lowercase L), and 1 (one), which look alike in many fonts.
Generated with your browser's secure random number generator (crypto.getRandomValues). The password is never stored or sent anywhere, and disappears when you change a setting or leave the page. Processed locally in your browser.