Yeah, “what if I lose my phone?” - that’s the key issue I identified. They want you to be dependent on your phone. The comeback is to store those passkeys in your platform account - in that case you are now chained to your account as well, and the security is only as good as access to your account.

Reply to this note

Please Login to reply.

Discussion

i have my passkeys in self-hosted vaultvarden. I can access it everywhere where i install the browser extension.

(also there are physcical FIDO devices out there so you don't need a phone per se)