Passkey integration on the server-side and user-experience upgrades

  1. What are the two main passkey implementation steps?

  2. What are server-side libraries that implement passkey support called?

  3. What information should be included in PublicKeyCredentialCreationOptions?

  4. When a passkey is created, which object is returned to the server?

  5. What is a challenge that a server uses to authenticate with passkey?

  6. To ensure the challenge fulfills its purpose, it must:

  7. What problem do Related Origin Requests solve?

  8. How does a website specify origins allowed to use its RP ID?

  9. What is AAGUID?

  10. What does ​​AAGUID stand for?