แฮช/การเข้ารหัส
ตัวสร้างรหัสผ่าน
รหัสผ่านสุ่มเชิงการเข้ารหัสที่ปรับความยาวและชุดอักขระได้
This generator draws from a cryptographically secure source of randomness (the Web Crypto API) right in your browser. No password ever leaves your device or reaches a server.
How to use it
- Pick a length — longer is always stronger; 16+ characters is enough for most services.
- Turn on the character sets you need: uppercase, lowercase, digits, symbols.
- Exclude easily confused characters (0/O, 1/l/I) if you'll need to type the password by hand.
What makes a password strong
Strength comes from entropy — length and the size of the character set — not from how "complicated" a password looks to a person. A long password made only of lowercase letters is often stronger than a short one mixing every character type.
Where it's supported, turning on two-factor authentication does more for an account's security than relying on password length alone.
Things to keep in mind
Don't reuse the same password across services — a breach on one account shouldn't put the others at risk.
Store passwords in a password manager, not in a text file or notes app.
บทความเกี่ยวกับเครื่องมือนี้: Password Generator: อะไรที่ทำให้รหัสผ่านแข็งแกร่งจริง ๆ
คำถามที่พบบ่อย
อะไรทำให้รหัสผ่านที่สร้างขึ้นแข็งแกร่งจริง ๆ?
ความยาวสำคัญกว่าความซับซ้อน — รหัสผ่านที่ยาวกว่าจากชุดอักขระขนาดใหญ่มีจำนวนชุดผสมที่เป็นไปได้มากกว่า ทำให้บรูทฟอร์สยากขึ้นแม้ไม่มีสัญลักษณ์แปลก ๆ
ใช้เครื่องมือนี้สร้างรหัสผ่านสำหรับบัญชีจริงปลอดภัยไหม?
ปลอดภัย รหัสผ่านถูกสร้างในเบราว์เซอร์ของคุณโดยใช้แหล่งข้อมูลสุ่มที่ปลอดภัยเชิงรหัสลับ ไม่มีการส่งข้อมูลใดไปยังเซิร์ฟเวอร์หรือจัดเก็บที่ใด
ทำไมต้องตัดอักขระที่กำกวมอย่าง l, 1, O และ 0 ออก?
อักขระเหล่านี้อาจดูเหมือนกันในบางฟอนต์ ทำให้พิมพ์หรืออ่านออกเสียงผิดพลาดได้ง่าย การตัดออกแลกกับเอนโทรปีที่ลดลงเล็กน้อยเพื่อลดข้อผิดพลาดในการคัดลอก
พาสเฟรสจากคำศัพท์ดีกว่าอักขระสุ่มหรือไม่?
สำหรับรหัสผ่านที่เก็บไว้ในโปรแกรมจัดการรหัสผ่าน อักขระสุ่มให้เอนโทรปีต่ออักขระสูงกว่า แต่สำหรับ "รหัสผ่านหลัก" ที่ต้องจดจำด้วยตนเอง พาสเฟรสจากคำสุ่มหลายคำมักใช้งานได้จริงมากกว่า — จดจำง่ายกว่าในขณะที่มีเอนโทรปีใกล้เคียงหรือสูงกว่า
สามารถเชื่อถือตัวสร้างรหัสผ่านที่มากับเบราว์เซอร์หรือโปรแกรมจัดการรหัสผ่านได้หรือไม่?
ได้ หากใช้แหล่งความสุ่มที่แข็งแกร่งเชิงรหัสลับ (Web Crypto API หรือเทียบเท่า) ไม่ใช่ Math.random() ธรรมดาหรือตัวสร้างเลขสุ่มเทียมอื่น ๆ ที่ไม่เหมาะกับงานด้านความปลอดภัย