Can we get rid of passwords yet? They make for a poor user experience and users are notoriously bad with them. The advent of WebAuthn has brought a passwordless world closer, but where do we really stand? In this talk we'll explore the current user experience of WebAuthn and the requirements a user has to fulfil for them to authenticate without a password. We'll also explore the fallbacks and safeguards we can use to make the password experience better and more secure. By the end of the session you'll have a vision for how authentication could look in the future and a blueprint for how to build the best auth experience today. --- Links: https://passkeys.dev/ https://webauthn.me/ https://web.dev/passkey-registration/ https://passkeys.directory/ https://web.dev/web-otp/ https://philna.sh/blog/2022/12/07/better-two-factor-authentication-experiences-with-web-otp/ https://web.dev/security-credential-management/