Re: [webauthn] Clarify how a user can authenticate from multiple devices (#151)

@arshadnoor I do get your point, and I agree with it to a certain extent. Eventually everyone may embrace security keys and it will be an absurd consider that someone might not have one, but while that will probably be true in 10 years we can't ignore how today things work. 
How security freak does a company have to be to risk going bankrupt because it's mandatory for its clients to buy a 10$ security key, so @Oloompa is also right. We have companies like Visa or Mastercard that prefer to keep their unsecure networks as it would be more costly (commercially) to do it instead of assuming fraud losses!

$10 might not look too much in USA or Europe but consider Asia or Latin America and things change dramatically. Companies cannot afford to obligate their users to spend money and at same time try to thrive commercially. Most of companies are trying to convince users to pay for their services to become profitable, now add the requirement that users will have to pay an extra $10 to be secure and they can mostly certain close their businesses.
 

-- 
GitHub Notification of comment by mamartins
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/151#issuecomment-592540108 using your GitHub account

Received on Friday, 28 February 2020 14:35:53 UTC