Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Not just "most passkey stores". The spec has nothing about export/sync, so they've been working around it by hand.

There is a process of drafting a decision to put before the committee to change this ~now[1], but tbh I think the omission from v1 is a strong sign that the omission is literally intentional. I'm sure spec authors will disagree, as I am sure that many are well-meaning... but there are very strong incentives for the current giga-corps to impede and complicate it during design phases, as they are now doing to the UX. If backups and device-loss considerations for such intensely personal data is not baked in, simply, and mandated from day 1, it's intentional by someone.

[1]: https://blog.1password.com/fido-alliance-import-export-passk...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: