Loading...

Password Strength Test

Enter your password below to check its strength against common security standards and receive personalized recommendations for improvement.

Your password is never stored or transmitted to any server.
0 characters
Enter a password
0 Very Weak
Warning! This appears to be a common password. Common passwords are highly vulnerable to dictionary attacks.
Warning! This password might have been exposed in a data breach. Consider changing it immediately.
Estimated Time to Crack
Online Attack:

Instantly

Offline Attack:

Instantly

These estimates assume an attacker with modern hardware. Online attacks are limited by network and server restrictions, while offline attacks can be much faster.
Password Criteria
  • Length: At least 12 characters
  • Uppercase letters: At least one (A-Z)
  • Lowercase letters: At least one (a-z)
  • Numbers: At least one (0-9)
  • Special characters: At least one (!@#$%^&*...)
  • No sequences: Avoids common patterns (123, abc)
  • No repetition: Avoids repeating characters (aaa, 111)
  • Entropy: High unpredictability
How to improve your password
Suggested strong password alternatives:
OWASP Password Recommendations
  • Use a minimum password length of 12 characters
  • Include lowercase and uppercase letters, numbers, and special characters
  • Check against commonly used or compromised passwords
  • Limit the number of failed login attempts
  • Implement secure password recovery mechanisms
  • Store passwords using strong adaptive hashing functions with salt
OWASP Password Cheat Sheet
NIST SP 800-63B Guidelines
  • Minimum of 8 characters (though 12+ is recommended)
  • Maximum length of at least 64 characters
  • Support all ASCII characters including spaces
  • Screen passwords against known compromised passwords
  • No password hints or security questions
  • No periodic password resets without reason
NIST Guidelines