In more detail
The salt is stored in the clear next to the hash. It defeats precomputed "rainbow tables" and means a thief must attack each password separately. Modern password hashes such as bcrypt and Argon2 generate and store the salt automatically. A salt is not a secret key, and it does not make a weak password strong.