The FIDO Alliance is aware of passkey lock-in, and it’s actively working to address that:

With all relevant operating systems now natively supporting passkeys, companies have been increasingly adopting them as an alternative to passwords. Relying on passkeys minimizes the risk of getting hacked, as users don’t have access to their cryptographic keys, and intercepting them is significantly more challenging. However, those switching between different service providers may prefer traditional passwords, as there’s currently no easy way to import or export passkeys. To minimize the friction separating distinct platforms, the FIDO Alliance is working on a solution that makes moving passkeys between them a breeze.

The FIDO Alliance has published (via Neowin) a working draft encompassing specifications that would make moving passkeys between providers possible. When implemented, users would be able to securely import and export their passkeys, making switching platforms less challenging. Read more of the article.


More

ZDNet: Google: High-risk G Suite users now get same advanced security we use in-house

Google released their Advanced Protection Program for the enterprise, which requires FIDO Security Keys as…

Read More →

Dark Reading: More Companies Don’t Rely on Passwords Alone Anymore

Dark Reading reports that new research from ThumbSignIn shows 64% of respondents consider FIDO “necessary”…

Read More →

Dark Reading: Farewell, Dear Password? The Future of Identity and Authorization

Many organizations are considering trading out passwords for stronger authentication solutions, and FIDO Authentication is…

Read More →