top | item 42442873

(no title)

thought_alarm | 1 year ago

It sounds like you're arguing against passkeys, two-factor authentication, and password managers.

Do you use single, easy-to-remember plain-text passwords for all of your accounts and services? If not, you need to understand what the recovery process is when your passkey/2FA/pw-manager is unavailable or lost.

discuss

order

zamadatix|1 year ago

GP doesn't seem to mention password managers. The nice thing about password managers vs passkeys is they need not be locked to a particular device or platform. I can sync the same database of credentials between my phone, pc, and laptop without worrying if they are from the same vendor. I can export backups. I can access it through my personal website on any device (assuming I also remember my personal website login too) if desperate.

The problem with passkeys isn't the concept, it's the lack of flexibility in implementation.

jazzyjackson|1 year ago

Seems to be a common misconception, passkeys need not be tied to a device, they can be saved to a password manager and synchronized.

BadHumans|1 year ago

I use easy to remember plain text passwords for services that are low risk. It's a spectrum. I'm not concerned about someone hacking into my Hacker News account for example but I am very concerned about someone breaching my bank.