Password generator
A different password for every account, created inside your own browser. It never reaches us or anyone else — there is nowhere to send it.
- Home »
- Password generator
Choose the length and what goes into it. Every change gives you another one.
— · · guessing blind, at a hundred billion tries per second:
Computed here in your browser, like the password. It is for systems that ask you for a hash — it is not how a password should be stored.
Large and in groups of four, so you can type it somewhere else without losing your place — or spelled out, to read it down the phone.
Computed here in your browser, like the password. It is for systems that ask you for a hash — it is not how a password should be stored.
Four ideas, and none of them is swapping «a» for «@»:
Whoever hands out a password generator has to be the first not to touch the passwords. Plainly:
No. It is created inside your browser and exists only there. It is not sent to us, not written to any database and not kept in any log. Close the page without copying it and it is gone — we cannot recover it either.
The page uses your browser’s own cryptographic generator — the same one that produces the keys for secure connections. We do not use the ordinary random function, which is fast and predictable: anyone who sees a few outputs in a row can work out the rest. If your browser has no cryptographic generator, the page refuses to generate instead of quietly falling back to something nobody would notice.
Sixteen characters is a good place to start, and it is what this page offers. For the ones that really matter — your main e-mail, the hosting panel, the bank — twenty or more is worth it. Since you are not memorising it, length costs you nothing.
They help, but length helps more. A long password of only letters and numbers can be harder to guess than a short one full of symbols. If the site you are using refuses symbols, turn them off here and add two or three characters instead.
Because many systems do not accept certain symbols. The ones we use here are the ones almost everything accepts: quotes, slashes, backticks and spaces are left out, as those are what tend to break forms and configuration files. If it is still rejected, turn symbols off and make the password longer.
In a password manager — the one built into your browser will do, and there are dedicated programs. It is the only realistic way to have a different password everywhere. What is not worth doing is a note under the keyboard or a file called «passwords» on the desktop.
Changing passwords on a schedule, every three months, is no longer recommended: it pushes people into small variations of the same password, which makes things worse. Change it when there is a reason — a breach at the service, a shared computer, a suspicion.
This is the one rule not worth breaking. When any service is breached, the stolen passwords are immediately tried against the e-mail, the bank and the hosting panel of everyone who was in it. Generate another one: it takes a second.
It is enough for what it can do, which is resist being guessed. It does not protect you from typing it into a fake site, or from a computer with a program reading the keyboard. That is what two-factor authentication is for — and it is worth turning on in your account.
We do not have it to give you: passwords are stored in a way that means not even we can read them. What we do have is how to set a new one — our knowledge base has the steps for the client area, for cPanel, for Plesk and for e-mail accounts.
It is the hash: a fixed-length summary computed from the password that cannot be reversed. It is useful when a system asks you for a hash instead of the password. What it is not: the right way to store passwords. That calls for bcrypt or argon2, which are deliberately slow and add a different «salt» to every password; a bare SHA-256 is far too fast, and the same password always gives the same result, which lets it be attacked with ready-made tables. The fingerprint is computed in your browser, just like the password — it never reaches us.
Step by step for changing each password, and for turning on two factors
There are two ways to change your cPanel password, and the difference is simple: one needs the current one, the other does not. Before you start: this is your…
Read the articleChanging your My MozOut password takes less than a minute and interrupts none of your services. Before you start: this is your My MozOut password. It is not the…
Read the articleTwo-factor authentication (2FA) adds a second step to logging in to My MozOut: after your password, you also confirm with a code generated by an app on your phone.…
Read the article
More of ours, also free and with no account to create
Describe your business and MozOut AI suggests domain names. Availability is checked live and the price is MozOut - Kenya’s.
AI domain name generatorDescribe what your company does and MozOut AI suggests names. Each one comes with its domain checked live and the price from MozOut Kenya.
AI business name generatorSee your IP address in seconds, read straight from your request to our server. Nothing to install, and your IP is never sent to third parties.
My IP - Find my IP address