Remix.run Logo
yoz-y 9 days ago

I don’t like passkeys. Before my process to login was:

- open website

- if not already logged in, log in to 1Password

- autofill password

- autofill TOTP

Now:

- open website

- if logged in to 1Password the Use Passkey usually shows up

- if not:

  - log in to 1Password 

  - choose use passkey

  - this almost always does nothing

  - choose “use other method”

  - choose “password”

  - autofill that

  - now there is another dialog to choose the 2fa method, choose Authenticator 

  - autofill that
Passkeys would be great if they actually made anything simpler on a computer. They work fine on the phone but that’s not where I spend most of my time.
tecleandor 9 days ago | parent | next [-]

And if I'm not using passkey, but the web site detects I'm using a passkey-compatible browser or password manager, the site takes over and tries to "sell" me a passkey anyway. No, I don't want it!

al_borland 9 days ago | parent | next [-]

It’s also confusing if I’m being promoted to use an existing passkey or if I’m being promoted to create a passkey.

Now that I’m so paranoid about this, and not remembering which sites I have them for, I always dismiss the passkey prompt, then have to click several more times to get to the password login and fill it in with my password manager.

jerf 9 days ago | parent | prev [-]

I forget which site it is but there is one site I try to use with passkeys that somehow bypasses my BitWarden and rigidly insists on a passkey tied to Google and/or my phone, which I do not want. (My BitWarden stack is fully owned by me, as I self-host a VaultWarden instance, with daily backups of it, and I don't want my passkeys anywhere else.) That's definitely annoying.

geden 9 days ago | parent | prev | next [-]

Passkeys work very smoothly with Safari and Apple Passwords.

Apple Passwords now sufficiently good to replace 1Password for me and I’m slowly transitioning.

I don’t mind subscription models per se but there was something about subscription for your own passwords that made me refuse to jump the fence when 1Password switched to that model.

Would be a bit faffy if you’re a Chrome user.

jonplackett 9 days ago | parent | next [-]

It works fine until you dare to have TWO accounts for the same website. Safari will just randomly pick one of them and always tray to log you in with that passkey every time you visit, and the interface for using a different one is really annoying.

dpoloncsak 9 days ago | parent [-]

Maybe im misremembering, but I feel like it gave me an option between two accounts recently?

Let me see if I can get it again

ascagnel_ 9 days ago | parent [-]

Apple handles it cleanly in Safari (you get a list of the accounts you're registered with on macOS, and iOS gives you the two most-recently-used accounts for that website with a button to reveal more).

The implementation in Chromium browsers (I use Arc, so I can't speak to Chrome itself) is basically a chunkier-looking 1Password.

jonplackett 8 days ago | parent | next [-]

Well if that’s what’s meant to happen, it does not happen for me. All I get is the same account over and over again that isn’t the one I want to log in with. No matter how many times I tap the little x and then select the account I want, carefully avoiding the gaze of Face ID which will automatically use the selected passkey if it spots me.

dpoloncsak 9 days ago | parent | prev [-]

Ahhh I see. Typical Apple, honestly

xobs 9 days ago | parent | prev | next [-]

I've never gotten passkeys to work on the Mac. Every time I try it with either Firefox or Safari says I need to log into iCloud, which I really don't want.

al_borland 9 days ago | parent | prev | next [-]

I stick with 1Password, because I don’t want my password manager to be part of the barrier to using other platforms.

I also have a bunch of stuff in 1Password that doesn’t have a home in Apple Passwords, which would be a problem.

And yes, Chrome with Apple Passwords is annoying. At work I’m forced to use Chrome for some things, and I’ve been dabbling with Apple Passwords. Every time I launch the browser I have to put in a code to link the extension with Passwords. It’s very annoying.

kelnos 9 days ago | parent | prev [-]

... or like most people, and not a Mac user.

hgomersall 9 days ago | parent [-]

Or anyone that thinks a monoculture is bad and that perhaps we shouldn't trust a single vendor with everything important.

arccy 9 days ago | parent | prev | next [-]

That just sounds like you made a poor choice of password manager that doesn't put a priority on good ux...

Hackbraten 9 days ago | parent [-]

1Password used to be decent until they enshittified about five years ago, decided to rewrite their app from scratch in Electron, replaced their support staff with non-technical staff who are unable to write any meaningful response to critical bug reports, and hired developers who allowed the app to degrade beyond recognition.

agos 9 days ago | parent | prev [-]

that says more about 1Password than about passkeys. With 1Password I often get "does nothing" when trying to autofill good old regular passwords

KingOfCoders 9 days ago | parent [-]

1. I don't get that with 1Password

2. If you get this often, why do you use 1Password, honest question.

Hackbraten 9 days ago | parent [-]

Vendor lock-in and lack of alternatives.

1Password used to work decently well before 2020. Now I have ~ 2k items in 1Password, distributed among two accounts (work and personal). Additionally, my spouse and I have a shared 1Password vault via the Family plan.

There’s no way I’m going to migrate 2k items and two dozen devices to another vendor. If there were one that met my requirements to begin with.

tristan957 9 days ago | parent [-]

Every vendor implements export and import. Why do you think you would need to manually migrate?

Hackbraten 9 days ago | parent [-]

1Password has tons of features. No two vendors have exactly the same data model. Any of them might break on migration or worse, doesn’t exist on the target system.

For example, are my 2FA seeds going to migrate properly? How about the tags, attachments, sections, subsections, security questions and answers, inline Markdown notes, the HIBP integration, built-in overrides to fix known broken websites, workarounds I’ve learned for unfixed websites, shared vaults, recovering lost access to shared vaults, syncing, templates, custom integrations that I maintain [0], personal scripts, etc. etc.

Will it still be able to auto-fill into a web page? Into shitty, broken web pages? On Linux? On my Linux phone?

At the scale and depth at which 1Password is currently integrated into my spouse’s and my life, it’s difficult to consider migration anything less than a full weekend project.

I regret letting my spouse and myself lock into 1Password before it enshittified.

[0]: https://github.com/claui/aws-credential-1password