Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Change AuthenticatorSelection.Defaultto prefer ResidentKey (discoverable keys) #561

Closed
abergs opened this issue Oct 29, 2024 · 0 comments · Fixed by #563
Closed

Change AuthenticatorSelection.Defaultto prefer ResidentKey (discoverable keys) #561

abergs opened this issue Oct 29, 2024 · 0 comments · Fixed by #563

Comments

@abergs
Copy link
Collaborator

abergs commented Oct 29, 2024

With the move towards passkeys I think having the default AuthenticatorSelection discourage discoverable keys is wrong.
Let's embrace this momentum and change the default to prefer a resident key.

Discussion Points

I'd appreciate community feedback on this change, particularly regarding:

  • Security implications
  • User experience trade-offs
  • Specific use cases where this might be problematic
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
1 participant