Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

When passkeys first came out I was quite excited. Now trying to use them with KeepassXC/Keepassium the experience is terrible.

First off, nearly two full years into this “standard” existing only around 1/5 to 1/4 of my accounts support it. And the support is a crap shoot. I am finding some accounts only allowing you to have a single passkey and others such as Amazon expect a certain format making Keepass unusable. I save the key but I guess the response is wrong as Amazon thinks it failed.

ssh keys are great. Amazing. Having those instead of passwords would be a huge upgrade. Most people need a simple key management ui and portable keys then they would be set. But it’s like Password managers and sites that don’t allow copy and paste all over again.



Works perfectly in 1Password. One-click sign-in is awesome! I don't understand the hate towards passkeys. Managing passwords for non-techies is infinitely worse in my experience.


I’m not disputing that passwords suck. It’s just that the experience with passkeys hasn’t matched the vision I’ve been sold when I first read about it.

I am sure a more mainstream solution such as Google/Apple/Microsoft/1Password’s password manager would be a better experience. But the portability and data sovereignty of using a self hosted open source password manager such as Keepass is a requirement I have and like I mentioned, the supermajority of my online accounts have zero passkey support even 2 years in.


Bitwarden extension does passkeys too, and you can self-host the backend (either using official images or vaultwarden).


Yeah I recently started using Bitwarden with passkeys on a handful of sites and the UX is very good.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: