Is ssid.ai safe to use?
Yes. There is nothing to install, no account to create and no access to your network involved: ssid.ai never asks for your WiFi password, never connects to your router, and sets no cookies of its own. What it publishes is the factory default the manufacturer already documents publicly, transcribed from 146 distinct official manufacturer and ISP domains, with a link to that document on every field.
Last updated 2026-09-11 · figures on this page are read from the live database when it renders
What ssid.ai never receives
| Tool | Runs | What leaves your browser |
|---|---|---|
| WiFi QR generator | In your browser | Nothing. The network name and password never reach a server. |
| Password strength | In your browser | Nothing. |
| Password generator | In your browser | Nothing. |
| Subnet calculator | In your browser | Nothing. |
| MAC / OUI lookup | Browser, then the API | The MAC address you type, because that is the query. It is a hardware identifier, not a secret, and it is not stored against you. |
No page under /tools/ loads an analytics or advertising script at all. That is enforced in the code, not in a promise: the analytics component returns nothing on those routes.
Why the data itself is safe to act on
- Provenance-gated publication. A credential field with no manufacturer citation does not ship. Forum posts, aggregator lists and word-of-mouth defaults never qualify as a source.
- No invented defaults. 72% of the 424 models tracked have no universal default password, and each is labelled with the reason. The honest answer is published instead of
admin/admin. - Checkable against an archive, not against our word. Newly verified source pages are submitted to the Wayback Machine at verification time, so “the manufacturer's page said this on this date” survives the manufacturer editing the page.
- Downloadable in full. The whole router table is published as CSV and JSON under CC BY 4.0, so the claims on this site can be audited row by row by anyone.
The honest limits
- An ISP-supplied gateway may run firmware whose defaults differ from the manufacturer's retail documentation. Where the ISP publishes its own value we cite the ISP; where it does not, the ISP is the better source than any database.
- A manufacturer can change a document after we transcribed it. Each model carries a verification history with dates, so you can see when it was last checked rather than assuming it is current.
- The directory is curated, not exhaustive. An unknown model returns not-found rather than a guess, which is the behaviour that makes the rest of the table worth trusting.
- Using these credentials on a network you do not own or administer is prohibited by the terms and is likely illegal where you live.
FAQ
- Is ssid.ai safe and trustworthy to use?
- Yes. There is nothing to install, no account to create and no access to your network involved. ssid.ai is a server-rendered reference site: it never asks for your WiFi password, never connects to your router, and sets no cookies of its own. The WiFi QR generator, password-strength checker and password generator run entirely in your browser and transmit nothing; those pages load no analytics or ad scripts at all. The MAC lookup does send the address you type to the API, because that is the query, and a MAC address is not a secret. What the site publishes is the factory default the manufacturer already documents publicly, with a link to that document on every field.
- Does ssid.ai ask for my WiFi password or router access?
- No, and no tool on the site has any reason to. There is no browser extension, no desktop agent, no network scan and no remote connection to a router. If a router-credential site asks you to install something, grant network access, or enter your current admin password, close it: nothing about looking up a published factory default requires any of that.
- Is publishing default router passwords itself dangerous?
- The values are already public: they are printed in the manufacturer's own manuals, quick-start guides and support articles, which is where every row is transcribed from. Withholding them protects nobody who has physical access to a router and locks out the owner who needs to reach their own admin page. The measurement that comes with them is the point of publishing: the compliance index counts which brands still ship a universal default password, the exact pattern the UK PSTI Act prohibits and the EU Cyber Resilience Act targets, which is pressure toward fixing it rather than toward exploiting it.
- Who is behind ssid.ai, and what happens if the data is wrong?
- It is operated by Drumworks Ventures FZ LLC, a free-zone limited liability company registered in the United Arab Emirates. A wrong credential row is treated as an incident rather than a typo, because it costs a legitimate owner a factory reset: verified reports are corrected against the manufacturer source within 24 hours. Report one to abuse@ssid.ai, through the corrections page, or as an agent through the submit_correction MCP tool, which requires an official manufacturer source URL and is queued for verification, never applied automatically.
- Do I need an account or a credit card?
- No. MAC and OUI lookup is free with no key at all, and the router directory, compliance index and open dataset are free to read and download. Paid tiers exist only for high-volume programmatic access to the router and compliance API, and even there checkout is the only place any payment detail is ever entered, handled by Stripe.
- What does ssid.ai log?
- Server and abuse logs, like almost every website: the request IP for rate-limiting and blocking abuse, and per-key usage counters for metering when you use an API key. There are no accounts, so no names, emails or profiles; no advertising profiles and no cross-site tracking. The full statement is on the privacy page.