Re: [webauthn] correct usage of userHandle? (#1385)

Great, thanks for the clarification, I am going full username-less so I am doing almost exactly what you mentioned above.
A user can have multiple credentials linked to them, also when a user generates a JWT token, it is linked to the credential that was used to login, so I have full tracking from token-credential-user, hopefully eliminating any incorrect authentication.

-- 
GitHub Notification of comment by sachaw
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1385#issuecomment-596075746 using your GitHub account

Received on Saturday, 7 March 2020 10:58:12 UTC