Re: [webauthn] residentKey: "preferred-if-unlimited"? (#1822)

Is the plan to eventually support querying attached security keys for discoverable credentials to display in conditional UI prompts? Where did we land on that?

One thing missing from this conversation is metrics of some kind. Does the WG or perhaps FIDO have numbers on security key adoption amongst consumer RP's and their users? Sure, power users like some of us here are more keen to use security keys, and naturally we'd want RP's to respect the limited storage on our security keys. But I'd hazard a guess that most consumer RP's will see their users registering platform authenticators on their mobile devices, requiring at least `"residentKey": "preferred"` to be the default to ensure activation of all mobile platform authenticators and their credentials-get-backed-up passkeys support.

I'd like us to revisit the idea of mapping `"residentkey": "preferred"` to `requireResidentKey: false` at the next WG meeting. Would anyone object to spending a few minutes discussing this then?

-- 
GitHub Notification of comment by MasterKale
Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1822#issuecomment-1370578050 using your GitHub account


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Wednesday, 4 January 2023 07:43:31 UTC