top | item 46534287

(no title)

lsowen | 1 month ago

Passkeys _may_ be synced, but that isn't guaranteed. For example a "device bound passkey" isn't synced.

discuss

order

tadfisher|1 month ago

There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.html

Ideally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to.

nottorp|1 month ago

Iirc the original idea was that passkeys should be device specific. Of course that's impractical so now they're morphing to a long password that a human can't process.

In a few years someone will post "how about a long human retainable passphrase?" as a new and improved discovery.