Hacker News new | past | comments | ask | show | jobs | submit login

WebAuthN operates on a key pair generated using your biometrics in the background and then that is used for authentication. Your actual biometric data isn't sent to the website.



Ah, yes, thanks for clarification.

So I would just sync the keys locally or via some browser-extension and then on each device be responsible to provide the "secret" (e.g. my face or fingerprint) in a readily way to unlock said key, yes?


Yes, depending on the platform.

See apple passkey page: https://support.apple.com/en-in/HT213305




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: