busch21 on Nostr: For the average person on the street, passkeys in Apple/Google are a huge benefit ...
For the average person on the street, passkeys in Apple/Google are a huge benefit because they mitigate phishing attacks, password reuse, etc. Law enforcement and nation-states are not really a concern for them. But you're right, the vendor lock-in is real. Going through all the passkeys and adding another one when you leave the ecosystem of a single vendor is a lot of work. But as @danny mentioned, you can choose to store them in something like Bitwarden if you need the convenience of a roaming passkey. That’s fine for, in my opinion, 90% of services. For my most “valuable assets,” I use two hardware tokens from two different vendors. Thats my approach Bitwarden + two different hardware tokens.
Published at
2025-02-27 01:12:37Event JSON
{
"id": "345871c0754284d0c43ad40887b4ba855bd4efad0c6f2ea4dfb7d2759459df2a",
"pubkey": "0c252c138ee446b6f9c0964ff609380fc82e52c8d318529607f293fcdf828bea",
"created_at": 1740618757,
"kind": 1,
"tags": [
[
"e",
"7dcfe0a7d06c6738af3dd882c23751c20371af9c5fe99b0d768f5d747eaa094f",
"",
"root"
],
[
"e",
"defc6c5697a911cfcd663f61750e7cbb1fb3aafedc835a30e614a325eaf3fc2f",
"wss://nproxy.kristapsk.lv",
"reply"
],
[
"p",
"6e468422dfb74a5738702a8823b9b28168abab8655faacb6853cd0ee15deee93"
]
],
"content": "For the average person on the street, passkeys in Apple/Google are a huge benefit because they mitigate phishing attacks, password reuse, etc. Law enforcement and nation-states are not really a concern for them. But you're right, the vendor lock-in is real. Going through all the passkeys and adding another one when you leave the ecosystem of a single vendor is a lot of work. But as @danny mentioned, you can choose to store them in something like Bitwarden if you need the convenience of a roaming passkey. That’s fine for, in my opinion, 90% of services. For my most “valuable assets,” I use two hardware tokens from two different vendors. Thats my approach Bitwarden + two different hardware tokens. ",
"sig": "c6609c3ab584ede4e56e32e11b1ff2f66a0845d521a80eb563ecad657e5b73ea51eddf70a911c131188e4e978ef6ad619f23564221c6c80f0734a10fec5f7a6f"
}