Passkeys are built on the FIDO2 standard (CTAP2 + WebAuthn standards). They remove the shared secret, stop phishing at the source, and make credential-stuffing useless.

But adoption is still low, and interoperability between Apple, Google, and Microsoft isn’t seamless.

I broke down how passkeys work, their strengths, and what’s still missing

  • ☂️-@lemmy.ml
    link
    fedilink
    English
    arrow-up
    16
    arrow-down
    2
    ·
    1 day ago

    its being pushed because corporations want to control your passwords with lock-in.

    no way i’m using that garbage over my own manager with recallable plaintext passwords.

      • ☂️-@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        47 minutes ago

        all at once? i don’t think so.

        even then, corporate apps will always remove convenient features later for lock-in. i don’t fall for this shit anymore.