It is nice to just have a one click login for things.
It is nice to just have a one click login for things.
Passkeys replace passwords and also render basic TOTP/HOTP-based 2FA unnecessary. However, they do not replace modern, push-based 2FA, which may still be needed in higher-assurance or enterprise scenarios.
Regardless personally I am waiting for full FIDO Alliance interoperability/sync, so I'm not locked into a single password manager. I've already had to migrate password managers after my choice was taken over by Private Equity.
Push notification based 2FA can never obtain that level of security.
https://www.darkreading.com/cyberattacks-data-breaches/uber-...
do you remember which one? hope it wasn't bitwarden :/
And 1Password will still let me export my crazy-long password and TOTP code to a plain text file if I want to switch to a different password manager (of course, I’ll have to do some planning beforehand to make sure that the export destination doesn’t get picked up by my backup software).
You can require Google IDP to still have 2FA with passkeys.