Hacker News new | ask | show | jobs
by WhyNotHugo 532 days ago
Passkeys are 1 factor authentication.

They are often better than only using a password (merely due to the fact that most humans pick terrible passwords).

But using a password + 2FA generally is safer than passkeys. This is especially true if you use webauthn for 2FA, since now one of your factors is basically the passkey.