Runs entirely in your browser. Nothing leaves your device.
Combos = character-set size raised to the password length, divided by guesses per second. This is a rough entropy estimate, not a guarantee — real attackers often try common passwords and patterns first, which crack far faster than brute force alone.
Depends on length, character variety, and the attacker's guessing speed. A short all-lowercase password can fall in seconds; a long mix of cases, numbers, and symbols can take longer than the universe has existed. Type yours above to see your own estimate.
It's a rough brute-force estimate based on character-set size and length — useful for comparing password strength, not an exact prediction. Real crackers often try dictionary words and known patterns first, which can be much faster than raw brute force.
No. Everything runs in your browser with JavaScript — your password is never sent to any server or saved.