← All stories
● Covered by 1 source · 1 reportLow impact1 neutral

Passkeys offer security improvements over passwords but have adoption and sharing limitations

🔄 Updated 1h ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Passkeys use public/private key pairs, stored on devices, for authentication.
  • They eliminate the need for users to remember passwords.
  • Passkeys are not yet supported by all websites and services.
  • Sharing passkeys is more complex than sharing passwords.

Passkeys vs. Passwords: Core Functionality

Traditional passwords rely on a secret text string that is hashed and stored by websites. When a user logs in, the entered password's hash is compared against the stored hash for authentication. This method is vulnerable to data breaches if hashes are compromised.

Passkeys operate differently, utilizing a public key stored by the website and a private key held securely on the user's device. Authentication occurs when the website requests confirmation via the device's passkey, often using biometrics like Face ID or fingerprint scanning, or a device PIN.

Security and User Experience Benefits

Passkeys enhance security by removing the need for users to remember complex passwords, which are often weak or reused. The cryptographic nature of passkeys makes them resistant to phishing and credential stuffing attacks, as the private key never leaves the user's device.

For users, passkeys simplify the login process by replacing manual password entry with a quick biometric scan or device PIN, improving convenience and reducing login friction.

Current Limitations and Challenges

Despite their advantages, passkeys face limitations in widespread adoption and usability. They are not yet supported across all websites and online services, requiring users to still rely on passwords for many accounts.

Challenges also exist in managing passkeys across multiple devices and sharing them. Unlike passwords, which can be easily shared as text, passkeys are tied to specific devices or software, making sharing more complex and potentially limiting access if a device is lost or inaccessible.

Storage and Management

Passkeys are stored in secure enclaves on devices or within supported password managers. Major operating systems and password managers are increasingly integrating support for passkey storage and synchronization. Users must ensure their passkeys are backed up or accessible across their ecosystem to avoid lockout scenarios.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~32 min · 27 stories · Aug 18

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Passkeys provide a more secure login method than traditional passwords by using public and private key pairs tied to devices, eliminating the need for users to remember text strings. While they enhance security and user experience by leveraging device biometrics, passkeys are not universally supported and present challenges for sharing and device-independent access.