Product / Generator

Two ways to make a password you will not have to remember

Generate a random-character password from the classes you pick, or roll a Diceware phrase you can actually recall. Strength is measured on your device as it is produced.

What it does

Randomness you can inspect instead of trusting

The character mode lets you choose the length and which classes are in play — upper case, lower case, digits, symbols — and shows the strength of the result before you accept it. If you leave a class out, that is a weaker password, and the strength bar says so rather than quietly overriding you.

The Diceware mode produces a phrase from a word list instead. Longer, easier to spell and to remember, and usually stronger per character than a short random string.

Whatever you generate is a normal vault record: it is encrypted on save, masked until you ask to see it, and can be copied straight to the clipboard with a timed clear.

How generation works

Randomness comes from the platform

Values are drawn from the platform cryptographic random source rather than a seeded generator, so the result is not reproducible from anything you can observe.

Strength is scored locally

The estimate is computed on your device and shown next to the result; no part of the password is sent anywhere to be measured.

Saving encrypts it like any record

Once you accept a password it becomes a normal vault record and is encrypted with that item's own key.

Check the result before you keep it

The audit scores what you generate the same way it scores everything else, so a new password can be verified in the same place it will be stored.

Security Architecture

What a generator cannot fix

A strong password on a reused site is still a reused password

Generating a strong password protects that credential only if the site stores it well and you use it nowhere else. It does not protect a password that was reused across several services before you generated a new one, and it does not defend a session that is already being intercepted. Pair the generator with passkeys where a site supports them, and with the security audit to find what needs replacing.

CSPRNG

Platform randomness

Random values come from the platform cryptographic source, not from a seeded pseudo-random generator.

Diceware

Word-based alternative

A phrase from a word list is usually stronger per character and far easier to recall than a random string.

Pano

Timed clear

Copied values are cleared from the clipboard on a timer, so a password does not sit in the clipboard indefinitely.

Frequently Asked Questions

About generated passwords

How long should a generated password be?

Length matters more than symbol soup. Sixteen characters or more is a reasonable floor, and a Diceware phrase of five or six words is comparable or better while being easier to type.

Does it remember my generator settings?

The generator reflects the choices you make in the panel; it does not silently add character classes you switched off.

Can I use the generator offline?

Yes. It is a local feature and needs no connection.

Related pages

Download Installer