Post #574572
2026-03-07 19:00 UTC
Replies (5)
-
@katzenberger@tldr.nettime.org 2026-03-07 19:24
@rakekniven I'd be way more enthusiastic if websites didn't pester me with additional "challenges" after the passkey handshake was successful, like with a Captcha.
-
@pygora@mastodon.social 2026-03-07 20:47
@rakekniven I answered 0 but I use passkeys as often as possible… #KeePassXC for passwords and a #Yubikey for passkeys :)
-
@voks@social.tchncs.de 2026-03-07 20:57
@rakekniven I use passkeys, but don't save them in KeepassXC at the moment.
-
@k_ocmer@social.edu.nl 2026-03-07 21:47
@rakekniven the majority of those that participated in your survey, is not quite the same as the majority of users.
-
@madargon@is-a.cat 2026-03-10 22:20
@rakekniven I would use it more if sites/services I really use offer this. I wrote some time ago that DeviantArt and ArtStation don't have U2F option (their second factor was also premium paid feature, luckily I deleted both accounts now) and ProtonMail implemented it also after long time (and was bashed by Polish cybersecurity portals until it had this). So even better known U2F isn't implemented widely enough. Now it's much worse with passkeys. I only saw it on 2 or 3 BigTech services I have to use in my job. Maybe I should mention most Polish services, (including government, citizen matters and taxes) seem to not know about better verification method than SMS... So yes, there is long way to make modern and more secure authentication popular, firstly "server-side", then among end users.