• rumba@lemmy.zip
      link
      fedilink
      English
      arrow-up
      2
      ·
      15 hours ago
      1. password + 2FA AND/OR passkey required.
      • baby steps, start with getting them secure, then when most are ready start dropping the password
      • iron out the kinks, give all apps a chance to implement
      • if you only ever login with passkey and it asks you for 2fa, you can scrutinize the page more

      You can tell just from the response on this post people aren’t all ready for passkey yet, but you can’t wait fo them to decide they’re ready before you start.