Loading…

How to use API Token Generator

Choose a length and optional prefix, then generate. Tokens use secure randomness so they are safe to use as real API keys and secrets.

Frequently asked questions

How random are the tokens?

They are generated with the Web Crypto API, giving cryptographically secure randomness suitable for production secrets.

Should tokens have a prefix?

A short prefix like sk_ or pk_ helps identify a token's type and scope at a glance, as many API providers do.

How long should a token be?

32 characters or more of random alphanumerics gives ample entropy for bearer tokens and API keys.

More Hash & Crypto Tools

OTP Code Generator
Generate real RFC 6238 TOTP codes that match Google Authenticator from a Base32 secret
Simple String Hash
Compare multiple non-cryptographic hash algorithms
XOR Cipher
Encrypt and decrypt text with XOR bitwise operation
Number Base Converter
Convert numbers between binary, octal, decimal, hex
Text to Color Hash
Visualize text as a deterministic color hash
PBKDF2 Key Derivation
Derive a key from a password with PBKDF2-HMAC (SHA-256/384/512), salt and iterations
SHA-3 / Keccak Hash
Generate SHA3-256/384/512 and Keccak-256 digests (used by Ethereum)
Hash Identifier
Identify the likely hash type of a digest from its length and format
Hash Generator (All)
Generate MD5, SHA-1, SHA-256, SHA-512 hashes at once
MD5 Hash Generator
Generate MD5 checksums for text strings
SHA-1 Hash Generator
Generate SHA-1 hash digests from any text input
SHA-256 Hash Generator
Generate secure SHA-256 hash digests from text

← View all Hash & Crypto ToolsBrowse all 1,100+ tools →