Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You don't know what you're talking about.

Biometric data is only stored on your device. Logging into an app or website with a passkey just uses bog standard asymmetric crypto (public/private keypair). Also a lot of thought was put into the WebAuthn standard (an open standard) to make sure it can't be used as a tracking vector.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: