← Back to context Comment by nottorp 2 days ago Same with passkeys actually. 7 comments nottorp Reply SchemaLoad 2 days ago Passkeys get synced between your devices so they aren't any more fragile than passwords in a password manager. lsowen 2 days ago Passkeys _may_ be synced, but that isn't guaranteed. For example a "device bound passkey" isn't synced. tadfisher 2 days ago There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.htmlIdeally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to. 2 replies → 0cf8612b2e1e 2 days ago The big providers only want themselves to be able to backup passkeys. I do not want to handover my secrets to Apple/Microsoft/Google. lilyball 1 day ago Apple Keychain syncing is end-to-end encrypted, Apple cannot see the contents of your synced keychain.
SchemaLoad 2 days ago Passkeys get synced between your devices so they aren't any more fragile than passwords in a password manager. lsowen 2 days ago Passkeys _may_ be synced, but that isn't guaranteed. For example a "device bound passkey" isn't synced. tadfisher 2 days ago There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.htmlIdeally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to. 2 replies → 0cf8612b2e1e 2 days ago The big providers only want themselves to be able to backup passkeys. I do not want to handover my secrets to Apple/Microsoft/Google. lilyball 1 day ago Apple Keychain syncing is end-to-end encrypted, Apple cannot see the contents of your synced keychain.
lsowen 2 days ago Passkeys _may_ be synced, but that isn't guaranteed. For example a "device bound passkey" isn't synced. tadfisher 2 days ago There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.htmlIdeally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to. 2 replies →
tadfisher 2 days ago There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.htmlIdeally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to. 2 replies →
0cf8612b2e1e 2 days ago The big providers only want themselves to be able to backup passkeys. I do not want to handover my secrets to Apple/Microsoft/Google. lilyball 1 day ago Apple Keychain syncing is end-to-end encrypted, Apple cannot see the contents of your synced keychain.
lilyball 1 day ago Apple Keychain syncing is end-to-end encrypted, Apple cannot see the contents of your synced keychain.
Passkeys get synced between your devices so they aren't any more fragile than passwords in a password manager.
Passkeys _may_ be synced, but that isn't guaranteed. For example a "device bound passkey" isn't synced.
There is a project under way to specify how to "sync" device-bound keys between authenticators: https://fidoalliance.org/specs/cx/cxp-v1.0-wd-20241003.html
Ideally this should have been hashed out before deploying passkeys everywhere, but I guess you can always register multiple passkeys for the sites that allow you to.
2 replies →
The big providers only want themselves to be able to backup passkeys. I do not want to handover my secrets to Apple/Microsoft/Google.
Apple Keychain syncing is end-to-end encrypted, Apple cannot see the contents of your synced keychain.