Passkey as your key¶
Create a passkey for this site and store it in your password manager or keychain. Whenever this site needs to protect your data, it asks the passkey to derive a key, and every time you approve with a fingerprint or PIN. No account, no server, no identifier ever leaves your device. What a passkey is, why it can act as a key and where the limits are: see What is a passkey?.
How to use it¶
- Press "Create a passkey". The browser asks where to store it. Pick something that syncs (iCloud Keychain, Google Password Manager, Bitwarden, 1Password) so your other devices can use the same one.
- Press "Test unlock" to check the fingerprint or PIN flow. On another synced device, press it again to confirm it works there too.
- Press "Generate a backup key". Store the secret key in your password manager, apart from the ciphertexts. The public key is what you paste as the "Backup key" when encrypting.
Then go to local file encryption and choose the "passkey" mode.
Where to store it¶
| Location | Syncs to other devices | PRF support |
|---|---|---|
| iCloud Keychain | Yes, across Apple devices | macOS 15 and iOS 18.4 or later |
| Google Password Manager | Yes | Chrome on Android |
| Bitwarden, 1Password, Dashlane | Yes | Supported |
| Windows Hello | This computer only | Windows 11 with the February 2026 update or later |
| USB security key | Carried with you | Not supported on this page. It needs a different way of keeping the identity |
Things to keep in mind¶
- The passkey is bound to the
anoni.netdomain. Mirrors and onion addresses cannot use it, and Tor Browser turns WebAuthn off entirely. - If the passkey is lost or the password manager account is gone, only the backup key opens the data. Lose that too and nobody can help.
- This site stores nothing about the passkey and cannot tell whether you created one. This page is empty every time you open it, on purpose.
- The first use needs a connection to fetch the code. After that it stays on the device.