Learn

What is a passkey?

A passkey lets you sign in with your face, fingerprint, or device PIN. It replaces passwords with a proof that is much harder to steal or use on a fake website.

Key takeaways

  • A passkey signs you in with your face, fingerprint, or device PIN instead of a password.
  • Your device keeps the private secret; the website only gets a public part that cannot sign in by itself.
  • Passkeys check the real website address, so a phishing page cannot collect or use your sign-in secret.
  • They are often backed up through your Apple or Google account, so that account and its recovery options need strong protection.
  • Sealby has no account to sign in to, but follows the same principle: the secret that unlocks your files stays on your device.

A safer login without a password

Passwords are easy to reuse, forget, and type into the wrong website. They can also be exposed in a company data breach. A passkey is designed to remove those weak points.

The website asks your device to prove it holds the right passkey. You approve with your face, fingerprint, or device PIN. Choose “sign in with a passkey”, approve it, and continue — with no password to remember or copy between services.

How a passkey works

When you create a passkey, your device makes a matched pair of cryptographic keys. The private key stays on your device; the website saves the public key.

At sign-in, the website sends a one-time challenge. Your device answers with the private key without sending it away, and the public key verifies the answer. A breached website database therefore does not contain a reusable password.

Why passkeys stop phishing

A phishing site works by looking real enough that you type your password into it. A passkey is tied to the real website address where you created it.

Before signing, your device checks that address. A look-alike site fails the check, so your passkey does not respond. That is a strong reason to choose passkeys whenever a service offers them.

Keep your backup account secure

Apple or Google can sync passkeys, so signing in to the same account on a new device restores them. This is usually the most practical option.

It means your Apple or Google account deserves extra care. Use a strong unique password if it still has one, turn on two-factor authentication, review recovery options, and keep devices locked. Keep a recovery method for important accounts.

The same privacy idea for your files

Passkeys are for online accounts. Sealby has no account or service that you sign in to, so it does not use passkeys directly.

The privacy principle is similar: keep the important secret on your device, not a company server. Sealby applies it to files, encrypting them locally before you share or store them.

Quick answers

What is a passkey, simply?

It is a password replacement that lives on your phone, tablet, or computer. Your device confirms it is you with your face, fingerprint, or PIN. There is no password to type or remember.

Are passkeys safer than passwords?

For most people, yes. There is no reusable password to guess or steal from a breached website, and passkeys do not work on look-alike phishing sites. Protect your device and the account that backs them up.

What happens to my passkeys if I lose my phone?

Apple and Google can sync passkeys through your iCloud or Google account, so a new device can restore them. This is convenient, but it makes that account’s security and recovery settings especially important.

Does Sealby use passkeys?

No. Passkeys sign you in to online accounts, while Sealby has no account to log in to. Both use a similar privacy idea: the secret stays on your device. In Sealby, it protects your files rather than a website login.

Your vault is waiting.

Download Sealby and protect what matters. Setup takes under a minute, and there’s no account to create.

Download on the App Store

iPhone & iPad · iOS 17+ · Free