That's his point - he's demonstrating a proposed standard that would make storing passkeys server-side almost as easy as passwords.