logoalt Hacker News

gchamonlivetoday at 4:40 PM0 repliesview on HN

I really don't get passkeys and how they are supposed to be safer.

Currently I save all login tuples to Bitwarden and store OTP secrets onto Aegis. Could have been 1password and authy, it's irrelevant. The thing is, I only get pwned if both are compromised.

Now with ubiquitous passkeys in Bitwarden if someone has access to my vault unencrypted it's already endgame.