PassLab
16-character password

Generate a
16-character
password

Generate a strong, random 16-character password — the go-to recommendation from security experts, password managers, and frameworks like NIST. At 16 characters with full character variety, you have more security than you'll ever need from a brute-force standpoint.

Generator
StrengthVery weak · 0 bits
Time to crack
instant
at 10 billion
guesses / second
16
664
Generated with crypto.getRandomValues() — never leaves your tab.
Length
16 characters
Entropy
~104 bits
Best for
Your default for everything: email, banking, work accounts, social media, and any account linked to financial or personal data.

How strong is 16 characters?

A 16-char mixed password reaches ~104 bits of entropy. For context, breaking 80 bits of entropy is already considered infeasible with all computing power on Earth. At 104 bits, the only threats that matter are phishing and service-level breaches — not brute force.

Security note

16 characters is where most security professionals draw the line. It's the default in 1Password, Bitwarden, and Dashlane for good reason: it's long enough to be computationally uncrackable while short enough to be universally supported.

16-character passwords — common questions