For Admins
Passkeys (WebAuthn)
A passkey is a passwordless sign-in based on the WebAuthn standard: biometrics (fingerprint, Face ID) or a hardware security key (such as a YubiKey). A passkey is a personal account setting, not a project one: each user adds their own keys.
Registering a passkey
- Open Profile and find the Passkeys (WebAuthn) card.
- Click Add Passkey.
- The browser offers a way to confirm — biometrics or a hardware key.
- Confirm — the key is saved and linked to your account, and you get an email about the new passkey.
Signing in with a passkey
On the sign-in page click Sign in with Passkey. You don't need to type your email: the browser offers the saved key and asks you to confirm. No password is needed.
Managing passkeys
The Passkeys (WebAuthn) card lists your keys with a name and date. The name is set automatically — “Passkey” plus the time it was added, in UTC; you can't rename a key in the interface. The trash icon deletes a key right away, without confirmation. You can have several keys — say, one per device.
You need a browser with WebAuthn support — current Chrome, Safari, Firefox and Edge all have it; otherwise you'll see “Your browser does not support Passkeys”. A key is bound to the SupportHub domain: if the service moves to another domain, keys have to be added again. A key without a resident credential (an old U2F token, for example) can be registered but can't sign you in, because sign-in doesn't ask for an email.
A project admin has no list of the team's keys, no reset and no “passkey required” rule. Only the platform admin can remove a user's keys — all of them at once: Users → the user's card → Passkeys → Remove passkeys. The password and two-factor authentication stay in place.
Even with a passkey added, you can still sign in with your password. A passkey is an extra, more convenient way to sign in.
Was this page helpful?

