How to create a strong password?
K9#mx!P8$vL2@qZ1
xT7&bR4*wQ9#pM3
B7#kL9$vQ2
mR4!xP8*nW
Tr0ub4dor&
P@ss1
PASSWORD SECURITY GUIDE

Creating Strong Password Best Practices

A strong password is not about replacing an a with @ and hoping for the best.
Good password security comes down to a few simple habits: make every password unique, make it difficult to predict, and give it enough length.

01

Make every password unique

One password should protect one account. If the same password is used everywhere, a breach at one website can put your email, shopping, social media and other accounts at risk.

✕ Don't reuse one favourite password everywhere.
✓ Do use a different password for every account.
02

Make it unpredictable

Names, birthdays, pets, keyboard patterns and obvious substitutions are easy starting points for attackers. A password should not tell a story about you.

✕ Don't build passwords around personal information.
✓ Do use genuinely random characters or unrelated words.
03

Length gives you breathing room

Longer passwords generally provide far more resistance to guessing and cracking than short ones. Aim for at least 14 characters where possible, and more is better when you can use a password manager.

✕ Don't rely on short passwords with cosmetic complexity.
✓ Do favour long passwords or long random passphrases.

Let a password manager do the hard work

The practical problem is not creating one excellent password — it is creating dozens or hundreds of them and remembering none of them incorrectly. A reputable password manager can generate long, random, unique passwords and store them for you.

🔐

Passwords vs Passphrases

For accounts where you genuinely need to remember the credential yourself, a long passphrase made from unrelated words can be easier to recall than a dense string of symbols.

WEAK IDEAAndy1980!Personal and predictable
BETTER IDEApanda-lighthouse-copper-orbitLong and based on unrelated words

The exact examples above should not be copied as passwords. Use a generator to create your own random password or passphrase.

A simple password checklist

  • Unique: never reused on another account.
  • Long: preferably 14+ characters.
  • Unpredictable: no names, dates or obvious patterns.
  • Stored safely: use a trusted password manager rather than a notebook or spreadsheet.
  • Protected further: enable two-factor authentication or passkeys where available.
  • Reviewed: change passwords when there is evidence they have been compromised.

The bottom line

You do not need to become a cryptography expert to improve your password security. Start with unique passwords, make them long and unpredictable, and use a password manager to generate and remember them. Those habits remove many of the most common password mistakes.