← Back to context

Comment by jeroenhd

9 hours ago

Windows Hello offers an attestation API according to the releases I found, though because Microsoft has called at least four products "hello" now, I can't easily find the details. I don't think there's a technical reason why Google couldn't have released an app with a URL handler that uses that API except maybe for the Windows TPMs being less secure than mobile ones in general.

That attestation is for attesting you are using a TPM for user authentication. Which is different than attestation of integrity.