uencoder

PBKDF2 Key Derivation

Derive a key from a password using PBKDF2 (RFC 2898) with Web Crypto API. Free, private, and 100% client-side.

Local only

Recent history

No history yet

How to use

  1. Enter the password.
  2. Provide a salt.
  3. Set iterations (min 100,000) and key length.
  4. Select the hash algorithm.
  5. Copy the derived key.

Frequently asked questions

How many iterations should I use?
At least 100,000 for general use. OWASP recommends 600,000 for PBKDF2-SHA256 as of 2023.
What is a salt?
A salt is random data added to the password before derivation to prevent rainbow table attacks. Use a unique salt per password.

Related tools