Password Generator Online — Secure Random Passwords

Generate strong random passwords with browser CSPRNG. Choose length, character sets, exclude ambiguous glyphs, and create up to 50 passwords at once — copy all or one line at a time. Nothing is uploaded.

Loading…
Password generator — developer notes
Create strong local passwords with crypto.getRandomValues. Control length, character classes, ambiguous exclusion, and bulk count (up to 50). Results appear in a numbered list with per-line copy.

How generation works

Pick length (8–128), enable at least one character set, optionally exclude ambiguous glyphs (0, O, o, I, l, 1), and choose a count up to 50 — the numbered list fills immediately and refreshes when you change an option. Live generation uses crypto.getRandomValues — never Math.random. Copy all passwords at once, or copy a single line with the button beside each row. Symbols use a fixed set: !@#$%^&*()-_=+[]{}|;:,.<>? — documented here for predictability.

Options

Length (8–128)
Enter any length from 8 to 128, or use the slider beside the field. Longer passwords increase entropy; some systems cap length — pick what your target allows.
Character sets
Toggle lower, upper, digits, and symbols. At least one set must be on; otherwise generation fails with a clear error.
Exclude ambiguous
Removes 0, O, o, I, l, and 1 from the pool to reduce support and verbal-read errors.
Count (1–50)
Generate multiple passwords for fixtures without flooding the page. Enter a number or use the slider beside the field (1–50).

Examples

Default strong password

Settings

length=16, all sets, exclude ambiguous

Sample shape

16 mixed characters without 0OIl1

Digits only API key fragment

Settings

length=12, digits only, exclude off

Sample shape

12 decimal digits

Related utilities

Generate strong local passwords for fixtures. To hash a password with bcrypt (not for production auth scaffolding), use bcrypt-hash. Hub: developer utilities.

Password generator FAQ

Security and options

Is Math.random used?

No. Generation uses crypto.getRandomValues (CSPRNG) when available.

Are passwords stored or uploaded?

No. Values exist only in your browser session until you copy or clear them.

Why exclude ambiguous characters?

Glyphs like 0/O/o and 1/l/I are easy to confuse when reading aloud or from screenshots.

What symbols are included?

The fixed set is !@#$%^&*()-_=+[]{}|;:,.<>? — chosen for common keyboard coverage without spaces.

Can I copy a single password?

Yes. Each generated password has its own copy button in the numbered list, in addition to Copy all in the toolbar.

Timestamps, UUID, ULID, Nanoid, cron, passwords, regex, slugify, number bases, case, text diff, and chmod — all client-side.