Forum Discussion

rcarpenter1760's avatar
rcarpenter1760
New Contributor
8 months ago

Passkeys - AAL2 Compliance

Given NIST SP 800-63Bsup1, which states that synced passkeys are AAL2-compliant so long as the sync fabric’s authentication is also AAL2-compliant (among other requirements), has 1Password attested that its implementation conforms? I was able to find posts by 1Password acknowledging that passkeys in general are compliant but not anything specific to the 1Password apps/site themselves. (May have just missed something already published and apologies if so.)

1 Reply

  • Hello rcarpenter1760​! 👋

    Thanks for reaching out! 1Password is  FIDO2 compliant in regards to passkeys. 

    I'm not aware of any official public documentation "attesting" AAL2 compliance, can you tell me if you require this for specific compliance reasons? I can reach out to the team or help direct you to the appropriate contact once I learn more. 

    -Dave