4 ms·
One note: Organisations can chose to have device-bound passkeys, so Bit warden would no longer be a valid passkey store.
by 7bit 14d ago
One note: Organisations can chose to have device-bound passkeys, so Bit warden would no longer be a valid passkey store.
- vaylian 14d agoYou mean via attestation? If the company that you work for requires you to use a device-bound key, then they should also issue you a FIDO hardware token.
- 7bit 14d agoNo, not via attestation. That's a different concept. Device-bound just ensures they passkey stays on the device where it was created. Bit warden in that sense is not device-bound but synced.
- EvanAnderson 14d agoThe company I work for requiring device-bound passkeys is the least of my concern. Once the idea of device-bound passkeys being "more secure" gets into the public consciousness as being "more secure" it'll be like the idiotic websites that don't permit pasting into password fields.