What these terms cover
These terms cover your visit to MakePwd (domain makepwd.com) and your use of tools already on the site, including the Password Generator, Password Audit, Privacy Cleaner, Burn-Link, File Encryption Box, and the Burn-Link reader.
Where data is computed, and whether it leaves this device by default, is governed by the Privacy Policy. This page is only about use conditions and responsibility: who decides to send a result, whether tool output can be treated as “certified,” and which conduct is abuse.
How acceptance works
MakePwd has no registration, sign-in, or “I agree” account flow. If you keep opening pages, generating passphrases, cleaning text, creating Burn-Links, or encrypting files, you have read and accepted the terms then in effect.
If you disagree, stop using the site and do not keep sending links or files generated here. We do not treat these rules as inapplicable because “you never registered.”
What we provide
MakePwd is a browser-first encryption and privacy tools site. Current capabilities are below. All of them require no account and do not include a password vault.
| Tool | What you get | What this site does not do for you |
|---|---|---|
| Password Generator | Generate 6–128 character random strings or memorable passphrases on this device, then copy or export to your device | Does not save, sync, or assign them to other websites for you |
| Password Audit | Estimate strength locally and compare a built-in public leaked weak-password list | Does not run a web-wide HIBP check, and does not prove the password was never leaked |
| Privacy Cleaner | Strip common tracking parameters on this device and apply rule-based text redaction | Does not guarantee every tracker is gone or every sensitive field is masked |
| Burn-Link | Encrypt on this device with AES-256-GCM, store ciphertext on the existing API, and delete it after the read count or expiry | Does not provide a drive, email recovery, or a long-term vault |
| File Encryption Box | Stream-encrypt or decrypt one file on this device (up to 5 GB) and output .lock / .enc | Does not host the original file or keep the passphrase for you |
This site does not sell subscriptions, publish a price list, or promise response times or damages. A page that loads is not a service-level agreement (SLA).
What you remain responsible for
A tool only produces a result in this browser. After you copy it, download it, or send it to someone else, later risk is yours.
| What you do | What you must judge |
|---|---|
| Use a generated password to sign in to other services | Whether the length is enough, where you store it, whether you reuse it, and whether the other site is itself safe |
| Send a cleaned link or redacted text outbound | Whether the strip list covers your case, and whether a person can still be identified after masking |
| Send a full Burn-Link to someone else | Who the recipient is, whether they will forward it, and whether chat or mail will keep the full link |
| Encrypt or decrypt a file | Passphrase strength, .lock backups, and whether the decrypt environment is trusted |
You should ensure your purpose is lawful and comply with applicable law where you are and where the recipient is. This site does not review the text or files you enter.
Special Burn-Link terms
Burn-Link is not a drive. At create time, the browser encrypts first, then sends ciphertext, expiry (ttl_hours, 0–168 hours, default 24), and max reads (max_reads, 1–10, default 1) to the server. The full link shape is s.html?id={id}#{key}.
You agree and understand these limits:
- Whoever receives the full link including
#receives the ability to decrypt. - After the read count or expiry, ciphertext should be deleted as designed. Opening it again will say it has been burned or has expired.
- If the link, id, or fragment key is lost, this site cannot recover the content, because there is no plaintext copy and no separately stored key.
- The reader is public for the recipient and needs no account. The page is marked noindex for search engines, but it can still be forwarded or screenshotted.
- The create API may be rate-limited by IP. If you see frequent failures or too-many-requests messages, stop retrying instead of bypassing with a script.
Send the full link only to people you trust, and avoid pasting it into tickets, group notices, or public pages that log a full URL. After a link is sent, this site cannot “retract” plaintext the recipient has already read.
Prohibited uses
When you use this site, you may not do or help with the following:
- Use any tool for illegal activity, or share another person’s secrets, personal data, or protected works that you have no right to share.
- Use Burn-Link to send phishing, fraud, malware, or content that the law forbids distributing.
- Bulk-create ciphertext, probe ids, bypass rate limits, deny service, or run unauthorized security tests against the ciphertext API.
- Try to obtain, decrypt, or interfere with someone else’s Burn-Link ciphertext, or break the burn and expiry mechanisms.
- Present MakePwd output or branding as an endorsement of your business, a security certification, or a compliance conclusion.
- Scrape, mirror, or redistribute this site’s pages and scripts and present them as your own independent product.
We may limit access from abusive sources or refuse new ciphertext creates. Because there is no account system, that usually targets the request itself (for example IP rate limits), not “banning a user.”
Pages, scripts, and your input
Copy, layout, the MakePwd brand name, and the pages and scripts we provide remain our rights. You may inspect the front end for your own lawful purpose, including to verify that encryption stays in the browser. That does not grant a right to resell the brand, copy the whole site, or republish it with the source removed.
Passwords you type or generate, cleaned text, Burn-Link plaintext, and files remain under your control. Except for Burn-Link ciphertext stored as designed, this site claims no ownership of that content. After you send it, how the other party stores it is outside this site’s control.
Disclaimer and liability limits
Tools are provided as currently implemented, as is. Browser compatibility, on-device performance, network interruptions, CDN faults, or closing the tab yourself can interrupt a job or leave a result unsaved. We do not promise continuous availability, and we do not promise a fix within a set time.
In particular, do not read the following facts as warranties:
- The algorithm is AES-256-GCM and compute uses the Web Crypto API. That does not mean “uncrackable in every setting.”
- Password Audit can flag common weak passwords. That does not mean the password never appeared in a dump this list does not include.
- Privacy Cleaner works by rules. That does not mean it meets every redaction requirement in a contract or regulator checklist.
- Burn-Link deletes ciphertext on the server. That does not mean plaintext is gone from the recipient’s device, screenshots, or chat history.
To the extent applicable law allows, MakePwd is not liable for indirect loss, data loss, business interruption, or disputes from using a result with a third-party service. If local law does not allow certain liability to be excluded, this paragraph applies only to the extent the law allows. This page does not invent a damages cap or an insurance arrangement.
Term updates
If the tool set, API behavior, or use rules change, we will edit this page and update the effective date at the top. Continued use means you understand the updated terms. This site has no accounts, so historical versions are not sent as in-site mail or email.
Applicable notes
This site provides the tools above as MakePwd (makepwd.com). Operating-entity registration is not published, and no public support channel is connected. These terms set use limits. They do not choose a particular court and do not promise services that are not listed.
If mandatory law where you live gives you rights you cannot waive, those rights are not reduced by this page. How data is processed remains governed by the Privacy Policy.
How to contact us
No public support email is connected, and the footer does not show an unused support@ address. Use rules are on this page. How data is processed is in the Privacy Policy.
FAQ
Does opening MakePwd mean I accept the terms?
Yes. This site has no sign-up or sign-in step. If you keep browsing or using a tool, you have read and accepted the terms then in effect. If you disagree, stop using the site.
If a Burn-Link is lost, can MakePwd recover it?
No. The server stores only ciphertext. The decrypt key exists only in the # fragment of the full link. The site has no plaintext copy and no separately stored key, so content cannot be recovered by account or email.
Does MakePwd guarantee that generated passwords or encrypted files are absolutely safe?
No. The tools provide local compute as currently implemented. That is not a security audit, a penetration test, or a promise that something cannot be cracked. Passphrase length, how you store it, who you share with, and device security remain your judgment.
May I call the Burn-Link API in bulk or with automation?
This site is designed for manual use in a browser. The create API is rate-limited by IP. Bypassing limits, probing ids in bulk, or load-testing the API is abuse under these terms.