Skip to content
Accessibility
Theme
Text size
High contrast
Limit animations
Readable fontAtkinson Hyperlegible
Increased text spacing
Underline links
Always show focus

Runs in your browser — nothing you paste is uploaded.

WordPress Password Hash Generator

Locked out and need to reset a password straight in the database? Generate a WordPress-compatible phpass hash, paste it into wp_users.user_pass, and log in. Everything runs in your browser — the password never leaves this page.

A fresh random salt is used each time, so the hash differs on every click — that's expected.


      


    

When to use this

Use it when you can't log in to WordPress — lost admin password, broken email so the reset link never arrives, or a staging site with no mail configured — but you do have database access via phpMyAdmin, Adminer, or the MySQL CLI. Generate a hash for a new password and write it into the user's user_pass column.

Steps

1. Type the new password and the username above, then generate. 2. Copy the SQL. 3. Run it against your WordPress database. 4. Log in with the new password. WordPress verifies the phpass hash and transparently upgrades it to its current format.

Is it compatible?

WordPress 6.8+ writes new passwords as bcrypt, but still verifies the classic phpass $P$ format for backward compatibility. A phpass hash therefore logs in on every WordPress version and is re-hashed on first login. The hash this tool produces matches WordPress's PasswordHash routine exactly (MD5-based, 8192 iterations, $P$B prefix).

Security

The password is hashed locally in your browser with the Web Crypto random generator for the salt; it is never transmitted. Still, treat any password you type here as one to rotate afterwards if the machine isn't fully trusted, and never paste a real production password into a browser you don't control. This tool generates hashes only — it cannot crack or reverse them.

Related tools