| > Buy a second Yubikey I can (as a geek) but this is a problem for average Joe or a single mum with 2 kids. This is the reason even banks or <your employer> incl. Federal places uses Cisco DUO not an opensource solution. Most things are for average customer. passkeys are great - Assuming a person keeps one password (either Apple or Google OK) - Phishing for them is reduced - No need to squeeze brain for was it username or email address (for login field) - Most phones have fingerprint (even < $60 in developing world too with Android) - Passkeys work from Android 9 onwards - At the end some one needs to compromise. |
- And logging into your bank requires a proprietary device.
Let's be clear about what we're "compromising" about. If passkeys are going to be a replacement for passwords (and Google/Microsoft/Apple are very up-front about the fact that they want passkeys to be a replacement for passwords) they have to handle all of the use cases. But even if that wasn't the case and they could just target the general consumer, the downsides here are not just for techy people. The platform lock-in will absolutely affect ordinary people as well.
It'll mean that when your family member that doesn't know to make backups loses their iPhone, the only way to get those keys back will be to buy another iPhone.