Advanced
In reply to @varunsrin.eth
timdaub šŸ„@timdaub.eth
8/10/2023

But what are Passkeys good for in crypto? You canā€˜t see the payload of what the app is proposing to sign. Iā€˜m not trusting websites, Iā€˜ve been trusting wallets. Is this flipped now?

In reply to @timdaub.eth
Idan Levin@idanlevin.eth
8/10/2023

Theoretically the website can show you the payload before you sign no?

In reply to @timdaub.eth
Danny@ds
8/10/2023

Itā€™s a good point, all signature requests show ā€œsign into dapp with passkeyā€ with current webauthn capabilities. The messaging would need to improve. We need to give users confidence their intent is being fulfilled.

In reply to @timdaub.eth
Peter Ferguson@peterferguson.eth
8/10/2023

I see this argument pop up a bunch. I don't think it really makes sense. Most wallets rn will ask you to FaceID before signing, this is like saying the FaceID UI doesn't show you any payload. It is the wallets responsibility to show the users the payload before the passkey.