HN user

scarfaceneo

78 karma
Posts0
Comments30
View on HN
No posts found.
'Hey Number 17 ' 1 year ago

Those poor bosses, they’re employing people that are barely making them any profit, purely out of the goodness in their hearts.

Spare me your BS.

Imagine if you could link your email client and your web browser closely together so that every site that offered a magic link "just worked". You click a button, it emails you, your email client silently notifies the web browser and deletes the email, and then you get logged in.

How the hell do you think that’s better? Passkeys are absolutely portable, many of the password managers on the market allow you to export them.

What happens if google suddenly decides to deactivate your account?

That’s why you don’t create a passkey for the service that manages your credentials.

Use a pair of yubikeys.

BTW, all major email providers have a flow to allow you to recover access to your account.

When you enable passkeys it doesn’t suddenly deactivate every other way of logging in.

Stakes will be too high for that. The risk of that backfiring will be immense.

Well, there’s always the chance of claiming the shooter got away, and be lying in a ditch somewhere

Thank you. The whole read indeed feels like not understanding IPv6.

Just like people advertising not broadcasting SSID, or changing the SSH port, this is just a false sense of security.