|
|
|
|
|
by Scion9066
542 days ago
|
|
It's a standard supported by multiple parties, not just Microsoft, including multiple open source password managers. And it does provide some benefits: phishing protection (no shared secret that can be intercepted or given to the wrong party) and the service does not need to store as much sensitive information (don't need password hashes that could be leaked and cracked, just a public key). |
|
No ability to export your credentials.*
Device attestation to allow blocking "undesirable" devices from authenticating and lock in purposes.
*keypass was working on an export feature and there were already threats to use the attestation club to ban them from the landscape for not falling in line
https://github.com/keepassxreboot/keepassxc/issues/10407#iss...