Chrome Gets Passkey Support for Easier, Safer, Phishing-Proof Logon

Passkeys also arrived on Apple devices and browsers in recent weeks as the industry works to dump flawed password technology.

Stephen Shankland Former Principal Writer
Stephen Shankland worked at CNET from 1998 to 2024 and wrote about processors, digital photography, AI, quantum computing, computer science, materials science, supercomputers, drones, browsers, 3D printing, USB, and new computing technology in general. He has a soft spot in his heart for standards groups and I/O interfaces. His first big scoop was about radioactive cat poop.
Expertise Processors | Semiconductors | Web browsers | Quantum computing | Supercomputers | AI | 3D printing | Drones | Computer science | Physics | Programming | Materials science | USB | UWB | Android | Digital photography | Science Credentials
  • Shankland covered the tech industry for more than 25 years and was a science writer for five years before that. He has deep expertise in microprocessors, digital photography, computer hardware and software, internet standards, web technology, and more.
Stephen Shankland
a Google Chrome browser icon on an Android phone
Stephen Shankland/CNET

Chrome now can take advantage of new passkey technology developed by Google, Apple and Microsoft as a way to fix the logon shortcomings of passwords.

Passkeys, which arrived in iOS 16 and MacOS Ventura in recent weeks, most often use a biometric check on your phone or laptop to authenticate your access to an app or website. With Passkeys now available in Chrome, Google's password manager can synchronize passkeys across Chrome on different devices and with Android itself.

The combination of having your hardware with you and passing the biometric check is more secure than conventional passwords alone and than flawed two-factor authentication systems like verification codes sent by text message.

"We need to move towards passwordless authentication," said Ali Sarraf, a Chrome product manager, in a blog post Thursday. "Passkeys are a significantly safer replacement for passwords and other phishable authentication factors. They cannot be reused, don't leak in server breaches, and protect users from phishing attacks."

Passkeys remain unusual in the real world so far. But websites and apps have begun supporting the technology. For example, PayPal added passkey support in October.