I try always to disable email or SMS 2FA/recovery, because I deem them to be rather unsafe.
Btw Bitwarden announced to support pass keys soon ("in October").
I try always to disable email or SMS 2FA/recovery, because I deem them to be rather unsafe.
Btw Bitwarden announced to support pass keys soon ("in October").
You're opting to a lower security level by wanting something that can be synced.
I don't think most users care
If I can backup my passkeys, then I can disable them.
It's fine if you do that for two or three services. But my password manager has around 600 entries. If I would need to set up all of them on both keys and always switch the active one with the one in the safe location for setting up a new account I would go crazy. Having both of them in the same place kind of defeats the purpose of having two keys, as you would lose them together.
So better have a synced password manager and unlock the password manager with a hardware key.