WordPress Salt Generator
Generates the eight wp-config.php keys and salts in ready-to-paste form.
Generate the blowfish_secret for phpMyAdmin's config.inc.php. You get the 32-byte sodium_hex2bin() form that phpMyAdmin 5.2 and newer need, and a 32-character string for older versions.
config.inc.php, replace the $cfg['blowfish_secret'] line and save the file.phpMyAdmin uses blowfish_secret to encrypt the login cookie when auth_type is cookie.
sodium_hex2bin() keeps the file readable.crypto.getRandomValues: 256 bits of entropy.The two forms look like this (your values are random):
$cfg['blowfish_secret'] = sodium_hex2bin('...64 hex characters...');
$cfg['blowfish_secret'] = '...32 characters...';If phpMyAdmin shows "The secret passphrase in configuration (blowfish_secret) is not the correct length", you are on 5.2 or newer and need the first form.
phpMyAdmin 5.2 and newer need exactly 32 bytes. Use the sodium_hex2bin('...') line, which turns 64 hex characters into 32 bytes.
Only the cookie authentication method uses it. It's still good practice to set it.
No. It is generated in your browser and never uploaded.
Often used together with the Blowfish Secret Generator.
Generates the eight wp-config.php keys and salts in ready-to-paste form.
Generates secure random tokens and API keys with a chosen length, alphabet, and prefix.
Creates .htpasswd lines with bcrypt, APR1-MD5, or SHA-1 hashes for Basic Auth.