{"repo":"aws-samples/amazon-cognito-passwordless-auth","free":true,"listed":false,"github":"https://github.com/aws-samples/amazon-cognito-passwordless-auth","clone":"git clone https://github.com/aws-samples/amazon-cognito-passwordless-auth.git","description":"Passwordless authentication with Amazon Cognito: FIDO2 (WebAuthn, support for Passkeys), Magic Link, SMS OTP Step Up","language":"TypeScript","stars":440,"topics":["aws-cognito","fido2","magic-link","sms-otp","webauthn","authentication","aws","react","typescript","passkeys"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"Amazon Cognito Passwordless Auth NOTE: This is an AWS solution to add Passwordless support to Amazon Cognito using custom auth flows. However, Amazon Cognito launched native Passwordless support in November 2024 (see launch blog) and of course using native functionality should be preferred. The solution here may yet be of use to you for these reasons: - It supports usernameless FIDO2 sign-in (using discoverable credentials) - It gives you full control of the FIDO2 parameters that are used for the authentication. For example to turn on extensions (such as credProps), or to allow credentials that's don't require userVerification but only user presence. - This solution works in the lowest Cognito pricing tier. - Magic links and SMS based Step-Up auth are not yet natively available and this solution shows how to do it. - Lastly this solution can be used as a demonstration of how FIDO2 works; it may be helpful to be able to look under the hood. AWS Solution to implement Passwordless authentication with Amazon Cognito Passwordless authentication improves security, reduces friction and provides better user experience for end-users of customer facing applications. Amazon Cognito provides features to implement custom authentication flows, which can be used to expand authentication factors for your application. This solution demonstrates several patterns to support passwordless authentication and provides reference implementations for these methods: - FIDO2 : aka WebAuthn , i.e. sign i","default_branch":null,"files":null,"tree":[],"storefront":"/r/aws-samples","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aws-samples/amazon-cognito-passwordless-auth/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}