If you can drop a single device in a lake and lose your credential, it’s not a passkey. Passkeys are backed up and synced across your devices to deliver a great and safe user experience, while also eliminating phishing.
If it’s device-bound, it’s not a passkey. :)
Something really cool happened in the last week: the feedback I’ve gotten about passkeys has pivoted from, “Where can I use these?” to, “I really want to use these on the apps and websites adopting them, but I don’t think that they work in my particular setup”, which is outrageous progress.
I’ve helped people, I’ve learned so much, and the engagement is so energizing. As a community, we’r gonna replace passwords as the default credential on the web! :)
Notes by Ricky Mondello | export