Check how strong a password is and how long it would take to crack.
It calculates entropy from the character pool your password actually uses (lowercase, uppercase, numbers, symbols) and its length, then estimates how long an offline attacker guessing at 10 billion attempts per second would take on average to find it — a reasonable, if rough, benchmark for a leaked password hash.
No — everything is calculated locally in your browser using plain JavaScript. It's never transmitted, logged or stored.
Length alone isn't enough — a long password using only lowercase letters has less entropy per character than a shorter one mixing character types, and predictable patterns (like 'password123') are penalised regardless of length.