Check how resistant your password is to guessing and brute-force attacks. See its entropy, an estimated time to crack and practical suggestions — all computed privately in your browser.
How to use the Password Strength Checker
- Type a password.
- Review the strength rating, crack time and warnings.
- Follow the suggestions to make it stronger.
How strength is measured
We estimate entropy from the password's length and character variety, then penalise common patterns: dictionary passwords, keyboard sequences (qwerty, 12345), repeated characters, years and simple letter substitutions.
Crack time assumes an offline attack at 10 billion guesses per second against a fast hash — a realistic worst case.
Frequently asked questions
Is it safe to type my real password here?
The check runs entirely in your browser and nothing is sent or stored. Still, it's good practice to test a similar password rather than your real one.
Why is my long password rated weak?
Predictable patterns such as words plus a year, or repeated characters, are guessed quickly despite their length.