Passwords, secret keys, hashes and database credentials. Every generator runs in your browser with crypto.getRandomValues, so nothing you make here is sent to a server.
Random passwords of any length with letters, numbers and symbols.
Random word passphrases that are long and still easy to type.
Passwords built from words, numbers and syllables you can remember.
Passwords drawn from the full Unicode range, emoji included.
Random 4, 6 and 8 digit PINs that skip 1234, 1111 and other common picks.
Secret keys in the format Flask, Django, Express, Laravel, Rails and WordPress expect.
A SECRET_KEY that is safe to paste into a .env file or a shell.
A SECRET_KEY with the same alphabet as get_random_secret_key().
Signing secrets sized for HS256, HS384 and HS512.
API keys with a prefix, a checksum and the SHA-256 hash to store.
AES keys, Fernet keys and GCM nonces in hex or base64.
Passwords for MySQL users, with ready CREATE USER and ALTER USER statements.
Passwords for Postgres roles, with SQL commands and connection strings.
Passwords that pass CHECK_POLICY, with CREATE LOGIN and escaped connection strings.
Passwords with the percent-encoded form for mongodb+srv:// URIs.
Long passwords with requirepass, ACL SETUSER and redis:// URL lines.
Hash and verify bcrypt passwords at any cost.
Basic auth lines for nginx, Apache and Caddy.
The hash MySQL stores, so your CREATE USER never holds the plaintext.
Bulk v4 and v7 UUIDs, plus a decoder for any UUID.
Email someone a password or key, encrypted and deleted once they read it.
WPA2 and WPA3 passwords, with a QR code guests can scan to join.
A strong Discord password, plus how accounts get taken over.
A strong Steam password, plus Steam Guard and trade scam advice.
Roblox passwords from random words and digits, or random characters.
An RCON password with server.properties lines and mcrcon commands.