By using this site, you agree to the Privacy Policy and Terms of Use.
Accept

GadgetBond

  • Latest
  • How-to
  • Tech
    • AI
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Add GadgetBond as a preferred source to see more of our stories on Google.
Font ResizerAa
GadgetBondGadgetBond
  • Latest
  • Tech
  • AI
  • Deals
  • How-to
  • Apps
  • Mobile
  • Gaming
  • Streaming
  • Transportation
Search
  • Latest
  • Deals
  • How-to
  • Tech
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • AI
    • Anthropic
    • ChatGPT
    • ChatGPT Atlas
    • Gemini AI (formerly Bard)
    • Google DeepMind
    • Grok AI
    • Meta AI
    • Microsoft Copilot
    • OpenAI
    • Perplexity
    • xAI
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Follow US
ComputingMicrosoftSecurityTechWindows

Microsoft finally adds passkey sync to its built-in password manager

Passkeys on Windows are finally getting portable as Microsoft rolls out secure syncing through its native password manager.

By
Shubham Sawarkar
Shubham Sawarkar's avatar
ByShubham Sawarkar
Editor-in-Chief
I’m a tech enthusiast who loves exploring gadgets, trends, and innovations. With certifications in CISCO Routing & Switching and Windows Server Administration, I bring a sharp...
Follow:
- Editor-in-Chief
Apr 25, 2026, 4:21 AM EDT
Share
We may get a commission from retail offers. Learn more
Password Illustration
Illustration by Ray Dak Lam / Dribbble
SHARE

Microsoft is making a bigger play for a passwordless future, and this time it is doing something a lot of regular Windows users will actually notice: Microsoft Password Manager can now save and sync passkeys across devices as long as you are signed in with the same Microsoft account. That means a passkey you create on one supported device does not have to stay stuck there anymore, which removes one of the biggest annoyances people have had with early passkey rollouts.

That matters because passkeys are supposed to be simpler than passwords, not another security feature that creates extra friction. Microsoft says passkeys are designed to replace passwords with strong, phishing-resistant credentials, and on Windows, they use local device unlock methods like biometrics or a PIN instead of asking you to remember yet another login. So instead of typing a password that can be stolen or tricked out of you, you are usually approving a sign-in with something tied to your device, like Windows Hello face unlock, fingerprint, or PIN.

The bigger shift here is convenience. In its earlier rollout, Microsoft said passkeys saved in Microsoft Password Manager could be synced across Windows desktop devices, stored in the user’s Microsoft account, and used after local authentication, such as fingerprint, facial recognition, or PIN. The new engineering update goes further by explaining how Microsoft is trying to make that roaming experience secure enough for everyday use without weakening the security benefits that made passkeys appealing in the first place.

That is the part many people miss when they hear the word “sync.” Syncing passwords already makes some users nervous, so syncing passkeys sounds even more sensitive. Microsoft’s answer is a layered security design that combines confidential computing for sensitive passkey operations, hardware-rooted protection for encryption keys, tamper-evident recovery storage, and encrypted synchronization across registered devices. According to Microsoft, sensitive tasks such as credential creation, assertion, and recovery validation run inside Azure confidential computing environments, where cryptographic material is processed in protected memory and only attested service code can access protected encryption keys.

In less technical terms, Microsoft is saying it built special guarded zones in the cloud for the parts that matter most. The company says the backend uses confidential containers on Azure Container Instances and relies on trusted execution environments so the host environment cannot inspect sensitive passkey material while it is being used. That will not mean much to the average person day to day, but it is an important clue about Microsoft’s pitch: this is not just “we uploaded your passkeys somewhere,” it is “we designed the system so even our own infrastructure has limited visibility into the secrets it is handling.”

There is also a second protection layer around the keys that guard those synced passkeys. Microsoft says the service uses Azure Managed HSM for service-side encryption keys, and those keys are only released after the execution environment is verified through Microsoft Azure Attestation. In effect, the system is supposed to release sensitive keys only to trusted confidential workloads, not to ordinary environments where the risk surface would be higher.

Diagram illustrating the Edge Passkey Service architecture for secure passkey management and synchronization. The system includes Managed HSM for hardware-protected keys, Confidential Ledger for tamper-evident storage, and Confidential Compute for secure processing and recovery. An Edge Sync Service handles syncing encrypted passkeys between the service and client devices, which use biometrics, PINs, and device-bound keys for authentication.
Image: Microsoft

For users, the most visible part of this setup is the Microsoft Password Manager PIN. Microsoft said in its original rollout that when you save a passkey to Microsoft Password Manager for the first time, you set up a separate PIN to protect the vault, and that PIN is then used when unlocking passkeys on a new device. The company also said new-device unlocking has a maximum of 10 attempts, and its latest engineering post adds that recovery attempts are tracked with a retry counter and related metadata recorded in Azure Confidential Ledger to prevent rollback or counter tampering.

That recovery story is important because one weak recovery flow can ruin an otherwise strong security system. Microsoft says recovery and activation are validated inside confidential computing boundaries, and if the PIN attempt limit is exceeded, the system enters lockout and requires a secure reset flow started from a trusted device and authenticated through the user’s Microsoft account. That is a pretty clear sign the company knows synced credentials live or die on account recovery: people need a way back in, but attackers cannot be allowed to brute-force that same door.

There is also a practical reason this update matters beyond Microsoft Edge itself. Microsoft previously said passkeys stored in Microsoft Password Manager were supported in Edge on Windows, with additional platform support planned for the future, and it also introduced a browser policy that lets organizations control whether users can save new passkeys in the built-in password manager. So this is not just a flashy consumer feature – it is increasingly being treated like a real platform capability that both individuals and IT admins are expected to manage.

Zooming out, this launch fits into Microsoft’s much wider passwordless push. Microsoft Entra release notes say synced passkeys are now supported as a generally available authentication method in Microsoft Entra ID, with support for passkeys stored in native and third-party passkey providers and policy controls for different passkey types. Even though that side is more enterprise-focused, it shows Microsoft is trying to normalize synced passkeys across both consumer and work environments instead of treating them like an experiment.

For readers, the takeaway is pretty simple: Microsoft is trying to make passkeys feel less like a one-device trick and more like a real replacement for passwords across your digital life. If the company gets the balance right, users get faster sign-ins and stronger phishing resistance without the old headache of recreating credentials every time they move to a new device. And that may be the real test of whether passkeys finally go mainstream – not whether they are more secure on paper, but whether they are easy enough that ordinary people will actually use them.

Passkeys, after all, only win when they stop feeling like security homework. Microsoft’s latest move suggests it understands that, and syncing through Microsoft Password Manager is its clearest attempt yet to turn passkeys from a promising idea into something Windows users can live with every day.


Discover more from GadgetBond

Subscribe to get the latest posts sent to your email.

Topic:PasskeysWindows 11
Leave a Comment

Leave a ReplyCancel reply

Most Popular

DJI’s FC200 and T200 drones push industrial delivery and agriculture into the 200kg era

DJI Osmo Mobile 8P debuts with detachable remote and smarter tracking

ChatGPT for Clinicians is now free for verified US doctors

OpenAI Privacy Filter brings open-weight PII redaction to everyone

Opera GX Playground bundles panic button, Fake My History and Grass Touching Corner

Also Read
Dramatic promotional artwork of a hooded pirate assassin from Assassin’s Creed Black Flag Resynced holding a curved sword and an ornate flintlock pistol. Flames surround him in a circular blaze, with a burning pirate flag featuring a skull emblem in the background. The dark, fiery setting highlights the intense pirate combat and action-adventure theme of the game.

Assassin’s Creed Black Flag Resynced preorders are now live

Promotional artwork for Assassin’s Creed Black Flag Resynced showing a hooded pirate assassin standing on a ship deck with a curved sword in one hand and a flintlock pistol in the other. Pirate crew members, ship rigging, and a large sailing ship appear in the background under a bright blue sky. The title “Assassin’s Creed Black Flag Resynced” is displayed prominently at the top, emphasizing the action-adventure pirate setting.

Ubisoft announces Assassin’s Creed Black Flag Resynced for July 9

Screenshot of Microsoft PowerPoint with the Copilot side panel open beside a presentation titled “Monthly Operations Report.” The Copilot panel shows “Allow editing” selected, letting Copilot directly edit the presentation, with an alternative “Chat only” mode available. Suggested actions include creating a presentation, adding a slide, or creating a branded presentation, demonstrating AI-assisted presentation editing.

Microsoft adds agentic Copilot to Word, Excel, and PowerPoint

Windows 11 logo with white Windows icon and ‘Windows 11’ text on a solid blue background.

Windows Insider starts moving users to Experimental and Beta

Perplexity illustration. Abstract illustration of a transparent glass cube refracting beams of light into rainbow-like streaks across a dark, textured surface, symbolizing clarity, synthesis, and the convergence of multiple perspectives.

GPT-5.5 is now on Perplexity – but only for Max subscribers

Stylish living room featuring the Amazon Ember Artline lifestyle TV mounted above a white marble fireplace. The TV displays a framed landscape artwork of rolling green hills with orange flowers under a blue sky, blending in like wall art. The room includes a mustard yellow sofa with decorative pillows, wooden lounge chairs, warm wall sconces, books, and modern decor, creating a cozy upscale interior design.

Amazon Ember Artline is now available in the US, starting at $899

Screenshot of the Google Admin console showing the data import tool dashboard. The page headline reads “Copy your data seamlessly using the data import tool,” with sections highlighting cloud-native infrastructure, accelerated parallel data import, and comprehensive tracking and resolution. Below, a “Data import batches” table lists import jobs for departments like finance, marketing, legal, and HR, showing Exchange Online as the data type, running status, and success rates between 97% and 99%.

Google Workspace now has a free built-in data migration tool for enterprises

Screenshot of Google Drive with the “Ask Gemini” panel open. The interface shows options to ask questions about files with actions like “Get prepared,” “Find insights,” and “Make progress.” A sidebar labeled “Your sources” allows users to add files for deeper insights, while the main prompt box at the bottom lets users ask Gemini questions directly within Google Drive.

Google’s Ask Gemini in Drive is now out of beta and available to everyone

Company Info
  • Homepage
  • Support my work
  • Latest stories
  • Company updates
  • GDB Recommends
  • Daily newsletters
  • About us
  • Contact us
  • Write for us
  • Editorial guidelines
Legal
  • Privacy Policy
  • Cookies Policy
  • Terms & Conditions
  • DMCA
  • Disclaimer
  • Accessibility Policy
  • Security Policy
  • Do Not Sell or Share My Personal Information
Socials
Follow US

Disclosure: We love the products we feature and hope you’ll love them too. If you purchase through a link on our site, we may receive compensation at no additional cost to you. Read our ethics statement. Please note that pricing and availability are subject to change.

Copyright © 2026 GadgetBond. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | Do Not Sell/Share My Personal Information.