top | item 46437855

(no title)

TimC123456 | 2 months ago

There's a more-recent post on the same blog that gets into the details of how they're using the WebAuthn PRF extension to store key material, but for platforms and browsers that don't yet support the extension, you'll need a password manager that does. There's a table midway down the post with details: https://confer.to/blog/2025/12/passkey-encryption/

discuss

order

abeyer|2 months ago

This kind of insistence that their way is "better" and thus justifying removing agency from the user is the exact same thing that's kept me away from signal, too. Even their own blog post acknowledges a perfectly good current method for supporting what they want to do without any of this, yet they reject even allowing it as an option because they don't like the ux.

This arguably is more interesting than yet another closed messaging platform, but still not gonna use it with this requirement in place.