🔑 API Key Generator
Secure random keys & tokens with entropy & brute-force estimates
Key format
Hex
Base64
Base64url
Alphanumeric
UUID v4
Length:
32
Prefix (optional)
Character set toggles
Uppercase
Lowercase
Numbers
Special
Number of keys (1–10)
⚡ Generate keys
Clear
🔐 Best practices
Storage:
Hash keys with SHA-256 before storing; never store plaintext.
Rotation:
Rotate keys every 90 days (or less for high-security).
Scoping:
Use separate keys for read-only, write, admin scopes.
Prefix conventions:
Use prefixes like
sk_live_
(secret),
pk_test_
(public test) to identify environment & type.
Rate limiting:
Apply per-key rate limits to reduce abuse.