this post was submitted on 26 Sep 2026
389 points (94.9% liked)

Technology

88253 readers
3110 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] Passerby6497@lemmy.world 29 points 1 day ago (7 children)

I really wish that SQRL had taken off, as it solved most of the problems noted. It was effectively passkeys that you generated on the fly based on your private key (which you can back up and restore to other platforms if necessary) and the website domain by scanning a QR code (or clicking rh QR code if your on the same device) and sends the signed challenge to the website to auth you.

No need to login to your manager on random systems, no issues with platform lock-in, no worries about dedicated hardware, no worry about losing your access if your device dies (assuming you backup your shit).

[–] hansolo@lemmy.today 4 points 1 day ago (4 children)

SQuiRreL!

Yeah, no idea why not popular.

[–] ayyy@sh.itjust.works 10 points 17 hours ago (2 children)

Because it doesn’t encourage vendor lock in to big tech.

[–] jj4211@lemmy.world 1 points 6 hours ago

If SQRL was adopted, then the popular manifestations would have just as much vendor lockin, with built in password managers hosting the master private key without export option.

Passkey is not inherently vendor lock in. It's mostly a consequence of password managers doing software passkeys and not making it reasonable to export private keys. It does have a mechanism a site can use to lock to "trusted vendors", but if a site does that, that is on them for being dickish.

load more comments (1 replies)
load more comments (2 replies)
load more comments (4 replies)