Mars
Hey what’s up everyone. I’m one of the Reddit refugees that purged their accounts and searched the Fediverse for a new home. Happy to be here! AMA about Vancouver, the tech industry, my dog, or taking long walks outside :)
Modern social media: Feed algorithm bots curating and serving up bot-created content for other bots to create fake engagement on so that advertising bots can find the real humans that still exist in the desolate wastelands and market them bot-created ads.
The short answer is: Because the Northern states that we share a land border with currently observe Daylight Saving Time and we’ve been waiting literally years for the States to figure their shit out.
Well, it’s a full keypair being stored: Authenticators like Bitwarden need to first provide the public key to the relying party (RP) so the RP can issue the encrypted auth challenge. The challenge then is handed back to the authenticator, user verification happens, then the challenge is signed by the private key and sent back to the RP for verification to complete the auth ceremony.
Article links to 1Password’s directory of passkey supported sites/apps.
You’re thinking about “device-bound passkeys”. Bitwarden and any other third-party credential manager leverages “synced passkeys” because they don’t control the hardware.
Synced passkeys are actually called out in the FIDO Alliance’s FAQs as preferred since they more closely align with the desired replacement of traditional passwords.
It’s an interesting thought to consider that without access to centralized distribution platforms like app stores, something incredibly similar is created in its place: The so-called “super-app” (e.g. WeChat, Alipay).