Use AAL2/3 Passkeys in All Other Contexts
Use Case​
- Incubating: Recommended
- Active: Recommended
- Retiring: Recommended
Description​
All Other Contexts: Use a passkey (AAL2) or hardware key (AAL3) that activates using a password or biometrics
Details​
- C-SCRM: Y
- Priority Group: R1
- Mitre: CWE-308
- Sources: OpenSSF Great MFA Project Security Rationale
- How To: