• 0 Posts
  • 13 Comments
Joined 3 years ago
cake
Cake day: November 26th, 2021

help-circle






  • My understanding is:

    Passkeys are like a password + 2FA mashed together. If someone steals your “passkey password” they still can’t use it to login without the hardware component. That means phishing is harder. Since passkeys are generated for the user from their hardware it also forces better hygiene on the user by not allowig any password duplication.

    A downside is it is tied to hardware and a provider that can cause problems witb loss of device or when you change devices but it is hard to say how painful that is going to be.

    [edited for a bit more clarity]