• sugar_in_your_tea@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    17
    arrow-down
    1
    ·
    7 months ago

    Honestly, when I saw “passkeys,” my first thought was “vendor lockin.” Google and GitHub did it with SSO using OAuth, and they’re doing it again with passkeys.

    Honestly, this is a “surprised Pikachu” moment for me. The closer you get to convenience, the more the big players will want to lock you in:

    • biometrics
    • voice recognition
    • passkeys

    Passwords are hard to lock down because it’s easy to switch to something else.