Modern password guidance without false certainty
keeps password/passphrase generation and review browser-local while shifting guidance toward length, uniqueness, common-password blocking, password-manager compatibility, MFA, and compromise-driven changes rather than arbitrary composition rules or guaranteed crack-time claims.
Security boundary
A local meter can flag obvious patterns but cannot prove that a password is safe, unused elsewhere, or absent from every breach corpus. Do not paste sensitive production password exports into batch tools; generate unique secrets locally and store them in an appropriate password manager.
How to use this Password Strength Checker
Type a password in the local-only field. Optionally list personal words, names, usernames, or organization terms you want the checker to flag. The page reports Unicode code-point length, unique characters, observed character classes, an upper-bound random-search-space figure, and focused warnings for common words, sequences, repetition, years, or supplied avoid words.
What the result means
The checker keeps input in the browser, flags common local patterns, and emphasizes length, uniqueness, password managers, blocklists, and MFA rather than mandatory symbol recipes.