Password Strength Checker
Check how strong a password is and how long it would take to crack — privately, in your browser.
Runs in your browser — your data never leaves your device.
About the Password Strength Checker
Attackers do not guess passwords randomly — they try the most common passwords, names, words, years and keyboard patterns first. This checker looks for those weaknesses as well as length and character variety, and estimates how long the password would survive.
The check runs entirely in your browser; the password is never sent anywhere. Even so, it is wise to test a similar password rather than the one you use for banking.
How to use the Password Strength Checker
- Type a password (click Show to see it).
- Read the strength, estimated entropy and crack times.
- Follow the tips, or create a strong one with our Password Generator.
How it works
Entropy ≈ length × log₂(size of the character set used), reduced for common passwords, dictionary words and names (also with letters swapped for @, 0, 1, 3, $), repeated characters, sequences such as 1234 or qwerty, and years. Crack time assumes 100 guesses per second online and 10 billion per second offline against a fast hash.
Examples
Pakistan@123→ weak: a common word, a sequence and a predictable pattern.tiger-violin-mango-47-cloud→ very strong: long and unpredictable.
Frequently asked questions
Is my password sent to your server?
No. It is checked by code running in your browser and never leaves your device.
What makes a password strong?
Length and unpredictability. A passphrase of four or five random words is easier to remember and harder to crack than a short password full of symbols.