Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Passkey Autofill に賭けるマネーフォワード ID - Money Forwar...
Search
Nov Matake
September 20, 2024
Technology
1
250
Passkey Autofill に賭けるマネーフォワード ID - Money Forward Tech Day 2024
Nov Matake
September 20, 2024
Tweet
Share
More Decks by Nov Matake
See All by Nov Matake
OpenID Summit 2024 - Translation WG
nov
0
360
OpenID Summit 2024 - Panel : Celebrating Ten Years of OpenID Connect
nov
0
400
What’s Passkey @ AXIES 2023
nov
0
2.1k
NIST SP800-63C (rev.4) Federation & Assertions - OpenID BizDay #16
nov
0
50
#fidcon WebAuthn, Next Stage - #idcon vol.29
nov
0
2.1k
Safari (ITP) & Chrome (SameSite=Lax as default) が Federation に与える影響 - OpenID TechNight vol.17
nov
0
11
Sign in with Apple ~ diff from OIDC / OAuth 2.0 & characteristic identifiers design ~ - #idcon vol.27
nov
0
12
OAuth 2.0 & OpenID Connect 基礎 @ OpenID Meetup Fukuoka
nov
2
600
IIW #13 report at idcon #10
nov
2
69
Other Decks in Technology
See All in Technology
Cloud Run と GitHub Template Repository による軽量なアプリケーションプラットフォーム/ #nikkei_tech_talk
nikkei_engineer_recruiting
0
120
フルカイテン株式会社 採用資料
fullkaiten
0
32k
JTCや セキュリティチェックリストが夢の跡
nikinusu
1
800
フロントエンド開発事例③ Yahoo! JAPAN トップページ
lycorptech_jp
PRO
0
110
『GRANBLUE FANTASY: Relink』最高の「没入感」を実現するカットシーン制作手法とそれを支える技術
cygames
1
160
サーバー管理しないサーバーサービスManaged DevOps Pool
kkamegawa
0
140
DroidKaigi 2024 たすけて!ViewModel
mhidaka
5
1.1k
タイミーのレコメンドにおける ABテストの運用
ozeshun
1
210
効果的なオンコール対応と障害対応
ryuichi1208
6
3.1k
言葉は感情の近似値である。その感情と言葉の誤差を最小化しよう ~コミュニケーションにおけるアナログ/デジタル変換の課題に立ち向かう~
nktamago
0
250
DuckDB雑紹介(1.1対応版)@DuckDB座談会
ktz
6
1.4k
横断組織として考える共通DBの課題解決 〜 桃園の誓いアーキテクチャ 〜 / Addressing Shared Database Challenges as Cross-Team: “Peach Garden Oath” Architecture
4geru
0
240
Featured
See All Featured
Ruby is Unlike a Banana
tanoku
96
11k
実際に使うSQLの書き方 徹底解説 / pgcon21j-tutorial
soudai
166
48k
The Invisible Side of Design
smashingmag
296
50k
Intergalactic Javascript Robots from Outer Space
tanoku
268
26k
How to Ace a Technical Interview
jacobian
274
23k
A Philosophy of Restraint
colly
202
16k
Designing with Data
zakiwarfel
98
5k
Scaling GitHub
holman
458
140k
Speed Design
sergeychernyshev
22
430
Responsive Adventures: Dirty Tricks From The Dark Corners of Front-End
smashingmag
248
20k
What's new in Ruby 2.0
geeforr
340
31k
Building a Modern Day E-commerce SEO Strategy
aleyda
36
6.8k
Transcript
Passkey Autofill ʹṌ͚Δ ϚωʔϑΥϫʔυ ID Money Forward ID Focuses on
Passkey Autofill
Nov Matake Rubyist, Digital Identity Specialist, OpenID Foundation Japan Evangelist,
and recently Passkey freak.
None
None
None
None
1. Password 2. Passkey (= WebAuthn) (Apr. 2023~) 3. Google
Sign-in 4. Sign in with Apple 5. TOTP 6. SAML 7. Yahoo! JAPAN ID 8. SMS OTP 9. Email OTP (Aug. 2024~) Sign-in Methods
Passkey Autofill ʹṌ͚Δ ϚωʔϑΥϫʔυ ID Money Forward ID Focuses on
Passkey Autofill
https://haveibeenpwned.com/
https://corp.moneyforward.com/news/info/20240808-mf-press-1/
➡︎ ERROR
STRONG 💪 x WEAK ↘ = WEAK ↘
Passkeys
• FIDO • WebAuthn • Biometrics • Public Key Cryptography
• etc. Passkey Components
🛡 by Password Managers
None
None
• Password Managers • iCloud Keychain • Google Password Manager
• Windows Hello • 1Password • LastPass • etc. Passkey Support • Web Sites / Apps • Google • Apple • Amazon • Yahoo! JAPAN • Mercari • etc.
STRONG 💪 x STRONG 💪 = STRONG 💪
Passkey Autofill ʹṌ͚Δ ϚωʔϑΥϫʔυ ID Money Forward ID Focuses on
Passkey Autofill
Passkey UX Challenge
هࡌ͞Ε͍ͯΔձ໊͓ࣾΑͼɾɾαʔϏε໊ʢϩΰϚʔΫΛؚΉʣɺ֤ࣾͷඪ·֤ͨݖརऀͷొඪͰ͢ɻ
Yahoo! JAPAN yahoo.co.jp Mercari jp.mericari.com Google google.com Google google.com ͜ͷϖʔδͷεΫϦʔϯγϣοτͯ͢20248~9݄ʹࡱӨͨ͠ͷͰ͢
Yahoo! JAPAN yahoo.co.jp Mercari jp.mericari.com Google google.com Google google.com ͜ͷϖʔδͷεΫϦʔϯγϣοτͯ͢20248~9݄ʹࡱӨͨ͠ͷͰ͢
🙅
Passkey Autofill ʹṌ͚Δ ϚωʔϑΥϫʔυ ID Money Forward ID Focuses on
Passkey Autofill
passkey → password →
← passkey password →
→ →
Authentication UX 👍 Registration UX 🙅
None
None
🙅
Passkey Auto Upgrade (iOS / iPadOS 18+, macOS Sequoia+)
https://developer.apple.com/jp/videos/play/wwdc2024/10125/
→ →
Passkey Autofill Registration ( n o t y e t
… )
None
None
Bye Bye Passwords 👋