top | item 45737317

(no title)

greenicon | 4 months ago

Passkeys cannot be phished.

Other than that they shouldn't have a big advantage for a more professional user with unique, long, and random passwords. For the common user it should be a great upgrade, giving all these advantages with better UX.

discuss

order

ianburrell|4 months ago

Another is that passkeys are single login and sites don’t use 2FA. Not having to get out TOTP or receive SMS is worth it.

Basically, any site that does 2FA should take passkeys.

eviks|4 months ago

You can store 2fa in a password manager except for the dumb sms-bases ones, but that's still an extra step

eviks|4 months ago

Password autofill also provides that protection as it won't match on phishing domain