| ▲ | zdp7 a day ago | |
You aren't considering all the advantages of passkeys. Passkeys only work on the domain they were created for. Password managers usually default to providing the password of the current website, but nothing stops you from pasting that in at any site. There is no danger to the credential db being stolen. The website only has your public key. A website using passkeys can support cross device authentication which allows you to login to on a computer without it ever seeing your credentials. I'm sure that isn't a complete list. My last point, despite all the comments here, there is no vendor lock in. Bitwarden provides an open source self hostable option. On both Android and Windows 11, you can change your passkey provider to Bitwarden. A proper passkey implementation, should allow multiple passkeys to provide access. My bank does exactly that. | ||
| ▲ | Izkata a day ago | parent [-] | |
> Passkeys only work on the domain they were created for. Password managers usually default to providing the password of the current website, but nothing stops you from pasting that in at any site. Considering how my bank has changed the sign-in domain three times (as well as some other sites), I consider this a feature, not a shortcoming. | ||