~ / blog
// docs & notes

The reference desk

Technical writing on entropy, cryptographic keys, tokens and secure randomness — for developers who like to know why.

Concept·7 min

📊 What Is Password Entropy, Really?

The one number that decides how long a key resists brute force — derived from scratch.

read →
Reference·5 min

🔣 Hex Keys vs URL-Safe Tokens

When to use each format and how many bits of entropy you actually need.

read →
Pitfall·4 min

⚠️ Why Math.random() Is Not Secure

The predictable PRNG that should never touch a secret — and the right replacement.

read →
Sizing·5 min

🔑 How Many Bits for an API Key?

128 vs 256 bits, base64 length maths, and sane defaults you can ship.

read →
Security Tips·8 min

⚠️ Common Password Mistakes and How to Avoid Them in 2026

Most password security failures come from the same handful of mistakes.

read →
Security Guide·8 min

📋 Password Security Best Practices for 2026

A comprehensive guide to password security best practices for 2026.

read →
Security Guide·8 min

⚔️ Strong Password vs Passphrase: Which Is Better?

The debate between strong passwords and passphrases is settled.

read →
Technical Guide·8 min

🔬 Understanding Password Entropy: A Technical Deep Dive

Password entropy is the most important security metric you are not tracking.

read →
Security Tips·8 min

💡 Password Ideas Generator: Creative Ways to Generate Strong Passwords

Learn multiple creative approaches to generating strong passwords.

read →
Cybersecurity·8 min

🔐 How to Create a Secure Password: Expert Recommendations for 2026

Stop using patterns that attackers can predict.

read →
Cybersecurity·8 min

🛡️ What Makes a Password Strong? A Complete Guide

Password strength is about entropy, not complexity rules.

read →
Cybersecurity·11 min

🔢 Password Entropy: How Randomness Determines Security

Password entropy measures how hard your password is to crack.

read →
Open Source·9 min

🔍 Why Open Source Password Generators Are More Trustworthy

Can you trust a closed-source password generator?

read →
Self-Hosting·11 min

🏠 Self-Hosted Password Security: A Complete Guide

Take full control of your credential infrastructure.

read →