Signing back into the Community for the first time? You'll need to reset your password to access your account. Find out more.
Forum Discussion
MaKolarik
2 years agoNew Contributor
Feedback regarding the passkey recovery flow
First, congrats on the beta launch for all platforms! I've been looking forward to this all year, and it surely wasn't an easy feature to add.
After reading the expected device setup and recovery ...
1P_Dave
Moderator
2 years agoHello MaKolarik! 👋
Thank you for the feedback on our public beta for passkey unlock! The team continues to iterate and improve this exciting new feature and I appreciate you taking the time to let us know your thoughts.
You're correct that the passkey is used as a "first step" when it comes to authenticating to the 1Password server, the actual keys used to decrypt your data are transmitted from an existing trusted device to the device that you're signing in on using end-to-end encryption.
I recommend that you add as many trusted devices as possible to avoid being locked out. Saving a recovery code is also a good idea.
The recovery code allows you to perform a recovery of your data but, as you mentioned, it alone isn't enough to fully restore access. This is by design since we want to make sure that a stolen recovery code can't lead to account takeovers. This is why an extra step, using a confirmation code sent to your email address, is required when using a recovery code.
I understand that the email address confirmation step may not work for everyone and I've passed along your feedback to the team. Passkey unlock is still in beta which means that a lot can change before the final release, your feedback that you'd like to see other recovery options helps us to improve passkey unlock for everyone. 🙂
-Dave
ref: PB-37674399