Show HN: FIDO2 PRF with TPM and Fingerprint Auth for Confer on Linux
vitorpy.com·3d·
Discuss: Hacker News
🔐Decentralized Identity
Preview
Report Post

Confer.to is an end-to-end encrypted AI chat service. Unlike typical AI assistants where your conversations feed into corporate training data, Confer uses the WebAuthn PRF extension to derive encryption keys directly from your fingerprint. No passwords, no server-side key storage—just your biometric tied to a hardware-backed credential.

There’s a catch: this requires a platform authenticator with PRF support. Windows Hello and macOS Touch ID work out of the box. Linux? Not so much.

The Problem: Linux Has No Platform Authenticator

WebAuthn distinguishes between two types of authenticators:

  • Platform authenticators: Built into your device (Windows Hello, Touch ID, Android biometrics)
  • Roaming authenticators: External hardware like YubiKeys

Similar Posts

Loading similar posts...