• panda_abyss@lemmy.ca
    link
    fedilink
    arrow-up
    15
    ·
    edit-2
    5 hours ago

    Passkeys are okay, but your browser and OS want you to use them because you can’t just take a passkey to another platform, you have to create a new one, and it’s a pain in the ass.

    It’s a lock-in gimmick latching on to a real useful solution.

    • Psychodelic@lemmy.world
      link
      fedilink
      arrow-up
      2
      ·
      60 minutes ago

      Ok that makes a lot of sense. It definitely seems like it’s more for them than it is for the user’s “convenience”

    • 4am@lemmy.zip
      link
      fedilink
      arrow-up
      21
      ·
      4 hours ago

      Password managers can hold Passkeys now and they’re portable. Bitwarden stores all of mine, use them on any machine.

      • towerful@programming.dev
        link
        fedilink
        arrow-up
        3
        ·
        edit-2
        1 hour ago

        Yeh, I have passkeys in bitwarden.
        I get it. Once they become ubiquitous, you click “login” your password manager prompts you to select account, and you are in.
        No password that can be leaked, incorrectly stored, brute forced.
        Corporations can pre-register company service passkeys for new users.
        It’s like mTLS, except staged.

      • suicidaleggroll@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        1 hour ago

        While true, it still means you’re locked into only being able to log in from a browser that has the password manager extension installed and logged in. Sometimes I want to log in from another machine, or another OS, or another browser, or even an incognito window that doesn’t have access to my extensions.