Passphrase generator. Create memorable, cryptographically secure passphrases from word lists. Customizable word count, separators, and capitalization. 100% browser-based.
100% browser-based — your data never leaves your device
Generate memorable, secure passphrases from word lists.
Use the slider to select how many words your passphrase should contain (2-12). More words = stronger security.
Set a separator between words, toggle capitalization.
Click Regenerate until you find a memorable passphrase, then copy it to your clipboard.
Decode and inspect JWT tokens instantly.
Password GeneratorGenerate strong, secure random passwords with customizable options.
Passphrase GeneratorGenerate memorable, secure passphrases from word lists.
UUID GeneratorGenerate UUID v4 identifiers instantly.
UUID ValidatorValidate UUID strings and identify the version (v1, v2, v3, v4, v5).
Hash GeneratorGenerate SHA-1, SHA-256, SHA-384, and SHA-512 hashes from text.
JWT GeneratorGenerate signed JWT tokens for testing with custom headers and payloads.
Bcrypt Hash GeneratorGenerate bcrypt password hashes with configurable salt rounds.
API Key GeneratorGenerate cryptographically secure API keys in hex, base64, alphanumeric, and UUID formats.
HMAC GeneratorGenerate HMAC hashes with SHA-256, SHA-384, and SHA-512 algorithms.
AES EncryptEncrypt and decrypt text using AES-256-GCM with a password-based key.
Passphrases trade the gibberish of a random password for several ordinary words that are far easier to type and recall. The controls above pick words from a built-in list using cryptographically secure randomness, then stitch them together for you.
The classic audience here is anyone who must remember a long, important secret by heart, most often the master password of a password manager. A single mistake there locks you out of everything, so memorability is not a luxury, it is a requirement. Four to six random words give you roughly the same guessing resistance as a twelve-character random password while remaining something you can actually recall.
The tool also shines in human-facing situations. Temporary credentials that get dictated over the phone, typed on a phone's keyboard, or relayed verbally between coworkers are far less error-prone when they are plain words instead of mixed-case symbols. People mishear and mistype less when the secret sounds like language.
A passphrase that guards your password manager is the key to every other credential you own. Leaking it to a server-side generator means exposing the single most valuable secret in your digital life, handing an attacker a master key to your accounts.
Every word here is chosen locally in your browser using the same cryptographic randomness your operating system relies on. Nothing is uploaded, nothing is logged, and the finished passphrase never leaves your device, so the only place it ever exists is on your screen.
Use the slider to select how many words your passphrase should contain (2-12). More words = stronger security.
Set a separator between words, toggle capitalization.
Click Regenerate until you find a memorable passphrase, then copy it to your clipboard.
Practical examples to help you get the most out of Passphrase Generator:
// Word count: 4 // Separator: - // Capitalize: Yes // Result: Correct-Horse-Battery-Staple
A passphrase with 4-6 random words provides similar entropy to a 12-character random password but is much easier to remember and type.
Yes. Words are selected using the browser's Crypto.getRandomValues() API for cryptographically secure randomness.
No. All generation happens locally in your browser. Your passphrase never leaves your device.
Generate passphrases with 2 to 12 words.
Choose any separator between words — hyphen, dot, space, or custom.
Capitalize the first letter of each word for readability.
See the estimated entropy of your passphrase in bits.
Passphrase Generator is useful in a variety of scenarios across different workflows:
Creating memorable but secure master passwords for password managers
Generating passphrases that are easy to dictation or type on mobile
Creating temporary credentials that users can easily communicate verbally
A 4-word passphrase from our word list provides ~52 bits of entropy. Six words provides ~78 bits — equivalent to a strong random password.
Using a non-standard separator makes dictionary attacks slightly harder.
Explore more tools in the Security workspace:
JWT Decoder
Decode and inspect JWT tokens instantly.
Password Generator
Generate strong, secure random passwords with customizable options.
UUID Generator
Generate UUID v4 identifiers instantly.
UUID Validator
Validate UUID strings and identify the version (v1, v2, v3, v4, v5).
Hash Generator
Generate SHA-1, SHA-256, SHA-384, and SHA-512 hashes from text.
JWT Generator
Generate signed JWT tokens for testing with custom headers and payloads.