Bcrypt Hash Generator & Verifier
Generate and verify Blowfish-based Bcrypt cryptographic password hashes with configurable cost factors completely inside your browser.
Generate and verify Blowfish-based Bcrypt cryptographic password hashes with configurable cost factors completely inside your browser.
Bcrypt is a cryptographic password-hashing function designed by Niels Provos and David Mazières in 1999, based on the Blowfish cipher (RFC 2898 / OpenBSD). Unlike general-purpose hash algorithms such as MD5 or SHA-256—which were engineered for speed—Bcrypt was specifically created to be intentionally slow and computationally expensive.
Every Bcrypt hash output encapsulates three critical parameters in its 60-character ASCII representation:
$2a$, $2b$, or $2y$ denoting the schema version.10) representing $2^{\text{cost}}$ key-expansion iterations ($2^{10} = 1,024$ rounds).$2a$, $2b$, or $2y$) into the second field.Generate standard 2048-bit and 4096-bit RSA key pairs in your browser using the Web Crypto API. Export clean PEM files for SSH, JWT, or SSL/TLS.
Encrypt sensitive text or payloads with military-grade AES-256-GCM or AES-CBC authenticated ciphers. Decrypt payloads using matching passphrases locally.
Compute cryptographic HMAC authentication signatures for webhooks, REST APIs, and message verification using SHA-256, SHA-512, or SHA-1.
Generate and verify standard 30-second Two-Factor Authentication (2FA) TOTP codes from Base32 secrets. Compatible with Google Authenticator, Authy, and 1Password.
For modern production web backends, a cost factor between 10 and 12 is optimal. Round 10 takes approximately 70–90ms on modern CPUs—fast enough for interactive user logins, yet exponentially punishing for offline brute-force cracking attempts.
Yes. DailyToolbox executes all hashing algorithms purely within your browser memory using WebAssembly / local JavaScript. No password strings or hash outputs are ever sent across the network or logged.
$2a$ is the original Unix/BSD implementation. $2y$ was introduced by PHP to address a specific UTF-8 character handling bug. $2b$ is the modern OpenBSD standard that resolves both issues and is widely used across Node.js, Go, Python, and Java.
Browse our full suite of 157 browser-based tools, formatters, converters, and guides.