|
|
|
|
|
by coldpie
406 days ago
|
|
This is fine for corporate settings, where the data is not owned by the user but by the company. But it's completely unacceptable for managing one's own personal account. What do I do if I do not trust proprietary software to manage my ability to log in to online services? How can this be compatible with open source passkey providers? The spec failing to distinguish between these two cases is a major flaw and completely kills passkey viability for personal accounts until they resolve it. |
|