Closed pierre-yves-cb closed 6 months ago
Coinbase requires both an OTP and an email confirmation after signing in with a passkey. This is a bit of an anti-pattern for passkeys so unfortunately I won't be able to add Coinbase as a featured deployment.
I am curious why there is still a need for OTP (phishable) after a passkey (non-phishable). Besides the redundancy for security verification wouldn't this complicate the user experience?
Ack. OTP is triggered depending on a experiment which we might remove in the future or not. Some users might not have OTP triggered.
Similarly for email confirmation triggered on new device - it is depending on a an experiment that we might remove in the future or not. Some users might not have email confirmation triggered.
Closing for reasons mentioned in https://github.com/passkeydeveloper/passkeys.dev/issues/299#issuecomment-1823273276
Type
New service
Service Name
Coinbase
Service URL
coinbase.com
Web
Apps
Notes
No response
Links
Help
Contact