Remix.run Logo
wkat4242 2 days ago

No please, I don't want my keys locked into Google or Apple. They can block your account on a whim with no recourse. At least bit warden can do it now but the fido association seems to have beef with them because it's possible to extract the private key. This is exactly what I want though, to store it somewhere safe.

But for now I simply don't use passkeys. It needs to be 100% open and cloud independent.

bborud 2 days ago | parent [-]

I was talking about availability of hardware capabilities. And having a common interface to them so they are actually useful. Several of the machines I work on have a SAM, TPM, HSM chip or similar. But they’re not always present and they don’t necessarily have nice interfaces that makes writing software that works everywhere easy.

pabs3 6 hours ago | parent [-]

These are all running proprietary software that you can't upgrade. As an example, Yubikey had a bug a while ago where they were generating weak keys, which could be recreated from a bunch of signatures.