> at which point it’s no different to password syncing
You still get the phishing resistance, though!