568
submitted 5 months ago by cm0002@lemmy.world to c/memes@lemmy.world
you are viewing a single comment's thread
view the rest of the comments
[-] Katana314@lemmy.world 38 points 5 months ago

There's been a lot of pain in the attempt to portray it as "Just click the passkey button, and that's it! Your login is secured for life!"

No - Buddy. It is secured for this one specific device that I have biometric authentication for. What about my computer? What about my other computer that isn't on the same operating system? I have a password manager that stores these things, why didn't you save to that when I registered? Why is it trying to take this shit from my Apple Keychain when it's in Bitwarden?

And, the next ultra-big step: How would a non-techie figure this shit out?

[-] BorgDrone@lemmy.one 6 points 5 months ago

No - Buddy. It is secured for this one specific device that I have biometric authentication for. What about my computer? What about my other computer that isn't on the same operating system?

Then use a Yubikey.

[-] MDCCCLV@lemmy.ca 4 points 5 months ago

I tried a yubikey but most websites want you to use the pin for that which requires windows hello, and if you reset windows you lose that.

[-] starrwulfe@social.vivaldi.net 3 points 5 months ago

I use both Bitwarden and Apple's native Passwords.app and just save a passkey for each app. Usually you can name the passkey on the website/in the app as well.
This is also the system I use when saving 2FA TOTP codes as well so I guess I'm used to it, but it makes good sense to me to have reduncancy in my password apps. Also I lock up *the apps themselves* with passkeys in the respective app for ease of use.
:mastozany:

[-] candybrie@lemmy.world 2 points 5 months ago

And, the next ultra-big step: How would a non-techie figure this shit out?

They don't have a computer, another computer with a different OS, or bitwarden.

[-] ICastFist@programming.dev 2 points 5 months ago

And, the next ultra-big step: How would a non-techie figure this shit out?

They wouldn't, because the people calling the shots in the tech world create UX with a focus on it sucking for everyone

[-] jj4211@lemmy.world 1 points 5 months ago

This was roughly the state of affairs before but the state of things have relented where software password managers are now allowed to serve the purpose.

So if a hardened security guy wants to only use his dedicated hardware token with registering backups, that's possible.

If a layman wants to use Google password manager to just take care of it, that's fine too.

Also much in between, using a phone instead of a yubikey like, using an offline password manager, etc.

this post was submitted on 28 Feb 2025
568 points (100.0% liked)

memes

16673 readers
2590 users here now

Community rules

1. Be civilNo trolling, bigotry or other insulting / annoying behaviour

2. No politicsThis is non-politics community. For political memes please go to !politicalmemes@lemmy.world

3. No recent repostsCheck for reposts when posting a meme, you can only repost after 1 month

4. No botsNo bots without the express approval of the mods or the admins

5. No Spam/Ads/AI SlopNo advertisements or spam. This is an instance rule and the only way to live. We also consider AI slop to be spam in this community and is subject to removal.

A collection of some classic Lemmy memes for your enjoyment

Sister communities

founded 2 years ago
MODERATORS