It would be great if the password generator, instead of making me choose the exact length of the new password, let me directly choose the strength I want. Based on that and the chosen character set, it could figure out how long the password needs to be.
The length of a randomly generated password isn't my primary concern; what I care about is its strength. Of course the two are related, for a given character set; all I'm suggesting is making strength (not length) the quantity I have direct control over, and length (not strength) the derived quantity.
Currently, to get a password of length X, but not too hugely greater than X, I have to:
- configure the character set to satisfy the particular web site's rules
- keep trying different lengths until I get a strength in the range I'm looking for
Suggested UI for the strength parameter: a draggable-slider version of the strength meter from the main entry-edit window, tied to an editable numeric field displaying the number of bits of entropy (i.e. pretty standard for bounded integer input values). Of course, the maximum should be set insanely high by today's standards, to allow for "entropy inflation" (and for individual users' paranoia levels).
Even better would be to make both length and strength directly editable; whenever the user modifies one, update the widget(s) for the other one accordingly.