If I use a passkey aren't I making my login less secure?
I understand a lot of the benefits that passkeys offer such as domain spoofing etc but it seems to me that if I migrate to them that I am making things less secure.
If I currently log in to somesite.com, 1Password auto-fills my email and password. I then have the site set up to prompt me for a time-based token from the authenticator app on my phone.
So I have 2 layers of security that are separated from each other. If my 1Password account was ever compromised my 2FA would still afford me some level of protection.
With a passkey, I lose the second part of this as everything is handled by 1Password in the browser. Anyone gaining access to my 1Password account would have everything they needed.
Or is the idea with a passkey that we should still retain traditional 2FA procedures? I haven't really seen this discussed anywhere.
What would seem ideal is 1Password in the browser signs me in using a passkey but the 1Password app on my iPhone asks me to confirm it too, much like Google does with the Youtube app.
Am I missing something here?
1Password Version: Not Provided
Extension Version: Not Provided
OS Version: Not Provided
Browser:_ Not Provided