49
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 08 Jun 2025
49 points (91.5% liked)
Privacy
2580 readers
310 users here now
Welcome! This is a community for all those who are interested in protecting their privacy.
Rules
PS: Don't be a smartass and try to game the system, we'll know if you're breaking the rules when we see it!
- Be civil and no prejudice
- Don't promote big-tech software
- No apathy and defeatism for privacy (i.e. "They already have my data, why bother?")
- No reposting of news that was already posted
- No crypto, blockchain, NFTs
- No Xitter links (if absolutely necessary, use xcancel)
Related communities:
Some of these are only vaguely related, but great communities.
founded 7 months ago
MODERATORS
How do passkeys keep you inside Google’s walled garden?
They also push google oauth. If you're logging in to over a dozen sites with your google account, it becomes that much harder or at least more annoying to curate all of those. They're banking on people choosing convenience over security - and they'll be right.
With passkeys you no longer need to use oauth at all since creating and using passkeys can be done more easily than creating a new password or using oauth. If you’re using Google services of course you’ll still log in with a Google account, but on example.com you can just create a new account with a passkey and never worry about oauth or passwords at all.
They don’t, well, not any more than passwords do.
Making a new passkey when you switch services, is exactly like making a new password when you switch services.
not what this article is about at all
Where in the world are we talking about Google managing your passkeys. The article is about using passkeys for Gmail. You would manage your passkeys exactly like you would with any password, with a password manager like 1pass, bitwarden, etc. Google doesn’t manage or control any part of that.
Simple solution. Don't use Gmail at all. Unless you're really keen on someone else reading your mail, of course.
In lack of further context, and thus conjecturing, maybe as a leash/ransom? "If you walk out of our (Google's) line, we will kill potentially decades of your history".
I think OP and several others in this thread just don’t understand what passkeys are replacing, which is passwords. Google doesn’t manage any part of that.
more like the garden of weeds is spreading out of control. they want passkeys and oauth so they can become the third-party gatekeeper for everything.
the want them tied to bio because your fingertip or face are harder to share with others, harder to fake, easier to track multiple accounts with, and are tied to real people and identities that can be linked with other data their databases all to make their data and targeted adverts more profitable.
Passkeys have nothing to do with Google. They’re a standard compliant control mechanism designed to replace passwords. https://fidoalliance.org/passkeys/
Google doesn’t do anything with them besides store them exactly like they would your password. You authenticate using your device, which Google knows nothing about. The biometrics do not leave your device. https://www.passkeycentral.org/introduction-to-passkeys/passkey-security
Passkeys do not have to be biometric. You can use 1Password for example and not ever use fingerprints or anything biometric and still use passkeys to log in to services. It’s literally just a different better authentication method than passwords. You can still share passkeys through a password manager.
Literally everything you said is scaremongering and making it easier for scammers to take advantage of people. You should be switching to passkeys immediately.