Retail lags in authentication modernization, but not because providers aren’t interested in upgrading. It’s because customers actively reject change. Familiarity, ease of implementation and legacy system compatibility all mean that very few retailers offer anything beyond usernames and passwords, not even two-factor (2FA) and multi-factor authentication (MFA).

Ecommerce sites have experimented with magic links, an authentication method that is a little higher friction but is still a viable passwordless alternative. Meanwhile, biometric authentication (think fingerprints and facial recognition) is gaining popularity among less technical users, even if it’s simply to unlock their smartphones. Passkeys, another passwordless authentication method, leverage biometrics or a PIN to let consumers confirm a purchase with just a tap or a quick selfie.


More

CIO Insight: What New NIST Guidelines Mean for Passwords

FIDO Alliance Executive Director Brett McDowell breaks down the updated NIST guidance, looking at the…

Read More →

Wired: Google’s ‘Advanced Protection’ Locks Down Accounts Like Never Before

Wired reports that Google has rolled out its Advanced Protection service, where personal Google account…

Read More →

Wired: Google’s ‘Advanced Protection’ Locks Down Accounts Like Never Before

Wired reports that Google has rolled out its Advanced Protection service, where personal Google account…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.