Random String Generator (Alphanumeric, Passwords & Secrets)
Generate cryptographically strong random strings, API secrets, and QA stress testing tokens with custom character sets and entropy calculations.
Open ToolGenerate strong, uncrackable random passwords with custom symbols, numbers, and NIST-compliant entropy ratings. 100% secure client-side Web Crypto PRNG.
.3RPthB)&7>-INc*
Generate thousands of secure passwords, store credentials encrypted in variables, and automate user provisioning.
Use the slider to select a length between 8 and 64 characters (16+ characters recommended for high security).
Toggle uppercase, lowercase, numbers, symbols, and optionally avoid ambiguous characters (l, 1, I, o, 0, O).
Review the visual strength meter and click Copy to immediately copy the generated password to your clipboard.
Harnesses window.crypto.getRandomValues for unbiased, hardware-seeded cryptographic randomness.
Instant visual feedback on password complexity rating from Weak to Military-Grade Very Strong.
Prevents eye strain and transcription errors by excluding confusing characters like 0, O, 1, and l.
Generate single master passwords or bulk batches of 10 to 50 passwords for test credential seeding.
Empirical brute-force resistance benchmarks based on NIST 800-63B entropy calculations and modern hashcat multi-GPU rigs.
| Password Type & Length | Character Pool Space | Entropy (Bits) | Time to Crack (8x RTX 4090 Hashcat) | Security Rating (NIST 800-63B) |
|---|---|---|---|---|
| 8 Chars (Numbers only - PIN) | 10⁸ (100 Million) | ~26.6 bits | Instant (< 1 ms) | Very Weak (Insecure) |
| 12 Chars (Letters + Numbers) | 62¹² (3.22 × 10²¹) | ~71.5 bits | ~3.2 Hours | Medium (Basic Defense) |
| 16 Chars (Full Upper, Lower, Numbers, Symbols) | 94¹⁶ (3.71 × 10³¹) | ~104.9 bits | ~3.4 Million Years | Strong (Enterprise Grade) |
| 32 Chars (Military-Grade / Air-gapped) | 94³² (1.38 × 10⁶³) | ~209.8 bits | Trillions of Millennia | Ultra Secure (Air-gapped Systems) |
Clear answers about using this tool and automating workflows with RunMacro.
A 16-character password using uppercase, lowercase, numbers, and symbols contains ~104.9 bits of entropy and 94¹⁶ (3.71 × 10³¹) possible combinations. Modern multi-GPU arrays (such as 8x RTX 4090 rigs) testing billions of hashes per second would still require approximately 3.4 million years of continuous brute-force computing to crack it.
NIST 800-63B guidelines emphasize length over complex arbitrary rules. Passwords with 16+ characters offer exponential resistance against brute-force attacks compared to short 8-character passwords, even if the short ones contain complex symbols.
Yes, on RunMacro it is 100% secure. Our generator runs entirely client-side using your browser's native window.crypto.getRandomValues PRNG engine. Zero network requests are sent, zero passwords are saved, and nothing is transmitted to any cloud or database.
RunMacro allows enterprise and individual users to securely automate application logins, credential rotations, and form authentications across desktop and web software without exposing plaintext passwords to clipboard eavesdroppers.
Explore other helpful browser-based utilities in the same category.