Skip to content

NO TRUST

Trust nothing – Verify everything

PGEN1

Private credential utility

Password Generator

Generate strong passwords locally, review entropy, and estimate attack resistance without sending anything to the server.

Client-side No logs No uploads

Generate

Password Generator

Generated locally. Never saved. Never uploaded.

Length 14-20, with at least one enabled character type from each selected set.

Character sets

Enable the sets you want included. For maximum entropy, keep all enabled.

Entropy Waiting for password…
Bits: 0.0
Length: 0
Charset size: 0
Strength: N/A

Higher entropy means a stronger, harder-to-crack password.

Model

Time-to-crack estimates

Approximate offline and online attack durations based on current entropy.

Estimates assume random guessing and typical attacker capabilities. Real-world results vary.

Assume this password is one of 1 user in a breach.

Attack Model Time to Crack
GPU fast offline Waiting…
Slow hash Waiting…
Online no rate limit Waiting…
Online rate-limited Waiting…
Legacy baseline Waiting…

Security vendor references:

Always download security software directly from the official vendor domain.

Use wisely

Security Recommendations

Use unique passwords per site.

Reusing credentials turns one breach into many account takeovers.

Use MFA on important accounts.

Strong passwords and app-based MFA are stronger together.

Store secrets in a password manager.

Generated output is never saved by the Suite, so copy it somewhere safe.

Use Passwords Wisely

Generated passwords are strongest when they are unique, long, and stored somewhere built for secrets.

Length Beats Cleverness

A longer random password beats a short clever one. Replacing letters with numbers does not magically make a password strong.

Unique per account

Reused passwords are the main problem after a breach. One leaked site should not unlock your email, hosting, bank, or admin panel.

About symbols

Symbols help when a site accepts them cleanly. If a site has broken password rules, use more length instead of fighting the form.

Best Practice

Put generated passwords in a password manager right away. The Suite does not save them, and that is the point.

Local only Web Crypto Nothing stored Nothing sent