Why use a passphrase instead of a password?
Traditional passwords try to be strong by being complicated: short strings of mixed case, numbers and symbols. The problem is that short and complicated is both hard for you to remember and increasingly easy for computers to guess.
A passphrase flips the trade-off. A string of several random words, like correct horse battery staple, is far longer than a typical password, and length is what actually defeats modern guessing attacks. Six random words from a 7,776-word list carry about 77 bits of entropy, which is stronger than a typical 12-character random password and dramatically easier to type and remember.
How this generator works
- Real diceware method. Words are drawn from the EFF Diceware Long Wordlist of 7,776 short, memorable English words, the same approach as rolling five physical dice.
- Cryptographic randomness. Each word is picked with your browser's
crypto.getRandomValues(), the same secure random source used by browsers for encryption keys. NoMath.random(), no server, no patterns. - 100% offline. The wordlist is embedded in this page. Once it loads, you can disconnect from the internet entirely and it keeps working. Your passphrase never leaves your device.
How much entropy do you get?
Each word from the 7,776-word list contributes about 12.9 bits of entropy. Total strength is simply words times 12.9:
| Words | Entropy (bits) | Guidance |
|---|---|---|
| 4 | 51.7 | Okay for low-value accounts |
| 5 | 64.6 | Good for most accounts |
| 6 | 77.5 | Strong, recommended minimum for important logins |
| 7 | 90.4 | Excellent for password managers and crypto wallets |
| 8 | 103.4 | Maximum, for your most critical secrets |