Security
Password Strength Checker
Password Strength Checker analyses a password you type in against common strength criteria -- length, character variety, and common patterns -- and estimates how long it would take to crack in an offline attack.
Unlike the site's Password Generator (which creates a new random password), this tool is for checking the strength of a password you already have or are considering. Everything is calculated locally in your browser; your password is never sent anywhere.
How to Use the Password Strength Checker
- Open the Password Strength Checker tool.
- Type or paste the password you want to check.
- Review the strength rating and the criteria checklist.
- Adjust your password and re-check until it meets your desired strength.
- Use the Show/Hide button to verify what you typed without displaying it on screen for long.
Frequently Asked Questions
Is my password sent to a server when I check it here?
No. The entire check runs in JavaScript inside your browser -- your password is never transmitted, logged or stored anywhere.
How is the estimated crack time calculated?
It's based on the password's entropy (length combined with character-set variety) and a conservative assumption of 10 billion guesses per second for an offline attack against a stolen password hash. Real-world crack times vary depending on the attacker's hardware and the hashing algorithm used to store the password.
Should I still use this if my password manager already rates strength?
Either works -- this is a convenient, account-free way to spot-check a password strength without opening another app.