DEV Community

Discussion on: KeePass Passkeys: Analysis of KeePassXC Passkeys

Collapse
 
joyfuldev profile image
Tom Joy

The absence of attestation could cause inferior user experience and challenges with the confirmation of a passkey’s authenticity.

Attestation of what specifically?

Collapse
 
vdelitz profile image
vdelitz Corbado • Edited

The attestation of the authenticator (the device which creates the passkey). In this case, the "device" is the password manager, so KeePassXC. This means that it's not detectable that a passkey was created and stored in KeePassXC, see also here