Hacker News new | ask | show | jobs
by dandanua 925 days ago
I don't think resident keys are that worthwhile. Relaying party anyway has to remember the user somehow, even if it's just the public key. And it still has to associate the key with the user data.

I think resident keys just complicate things for users and developers.

1 comments

Resident keys are great, I don't have to remember usernames. I don't care what the RP does, I care that I can sign in with one click.
But you still have to remember what the key unlocks. A username could be just a label for it.