Comment by skybrian
But the whole point of this new standard is to allow passkeys to be portable:
https://arstechnica.com/security/2025/06/apple-previews-new-...
But the whole point of this new standard is to allow passkeys to be portable:
https://arstechnica.com/security/2025/06/apple-previews-new-...
If that ends up letting attested passkeys be exported outside of the Microsoft/Apple/Google oligopoly, I'll eat my hat.
As an example, see this issue opened against keepassxc saying that if they continue allowing plaintext passkey export, they're at risk of being blocked once attestation is standardized:
https://github.com/keepassxreboot/keepassxc/issues/10407
The goal here isn't maximizing user choice, it's to enforce minimum agreeable standards by the major vendors. It's up to you whether your personal needs wholly align with what they want to mandate, forever.