Password Strength Checker

Test how long it would take an attacker with modern hardware to crack your password. Calculates Shannon entropy, time-to-crack against a 10 billion-guesses-per-second offline attack, and checks against common patterns.

🔒 Privacy Notice Your password never leaves your browser. All calculations happen locally in JavaScript — no network requests, no logging, no analytics on input.

Loading interactive checker… If you have JavaScript disabled, this tool requires JavaScript to perform local calculations.

Why Password Strength Matters

Modern attackers don't guess passwords through a website's login screen — they steal a database of password hashes (from a breach) and crack them offline using GPUs that try 10 billion or more guesses per second. Entropy, measured in bits, captures how many guesses are needed on average. Each extra bit doubles cracking time. A 12-character random password mixing all four character classes has about 78 bits of entropy — strong enough to resist offline brute force for centuries. An 8-character lowercase-only password has 38 bits and falls in seconds. Password managers generate truly random high-entropy passwords so you don't have to remember them.

Best Password Management Tools

The easiest way to use strong, unique passwords on every account is to let a password manager generate and store them for you:

Not sure which password manager fits your needs?

Answer a few questions and get a personalized recommendation.

Find the right password manager →