Earlier quoted context omitted.
This is the crux of the matter. Maybe conceptually you will be able to run some kind of open operating system with your own code, but it will be unable to access software or services provided by corporate or governmental entities. This has been obvious for some time, and as soon as passkeys started popping up the endgame became clear. Pleading to the government definitely can't save us now though, because they want t…
> as soon as passkeys started popping up the endgame became clear That's why I'm 100% against passkeys. I'll never use them and I'll make sure nobody I know does. They're just a lock-in mechanism.
Before the branding they were known as FIDO2 "discoverable credentials" or "resident keys".
Two things have changed with the rebrand:
1. A lot of platforms are adopting support for FIDO2 resident keys. This is good actually.
2. A lot of large companies have set themselves up as providers of FIDO2 resident keys without export or migration mechanisms. This is the vendor lock-in part (no export feature), but it's not a feature of the underlying tech itself.
Fwiw FIDO are actively working on some standard for exporting/importing keys so that's something.
If you want to use passkeys without lockin, just use Bitwarden or KeepPassXC - they all have full support. Or you can also store a limited number of passkeys on your FIDO2-compatible hardware key like Yubikey or the open-source Nitrokeys.