Cointegrity

WebAuthn

Web3 / wallets security

A W3C web authentication standard that enables websites and applications to authenticate users using public key cryptography tied to hardware authenticators, including device biometrics and hardware security keys, instead of passwords. WebAuthn is the technical foundation of passkeys, which have become the primary alternative to passwords across major operating systems and browsers. The standard defines how a browser or application creates and verifies cryptographic key pairs where the private key never leaves the user's device hardware. For crypto wallets, WebAuthn is particularly significant because it enables the same cryptographic signing paradigm that underlies blockchain transactions to be applied to user authentication without requiring users to manage seed phrases. Passkey-based wallets use WebAuthn to generate wallet signing keys stored in device secure enclaves, enabling wallet creation, recovery, and transaction signing through biometric authentication rather than explicit key management. Example: Coinbase's Smart Wallet, launched in 2024, uses WebAuthn and ERC-4337 Account Abstraction to create wallets authenticated entirely through device biometrics. A user creates a wallet by authenticating with Face ID or Touch ID, which generates a WebAuthn credential stored in the device's secure enclave. Transaction signing uses the same biometric gesture, with no seed phrase ever created or exposed to the user, while the wallet's smart contract logic handles recovery through additional WebAuthn credentials on other devices. Why it matters for Web3: WebAuthn represents the convergence of mainstream authentication standards with blockchain wallet security. By building wallets on the same credential infrastructure that Apple, Google, and Microsoft have deployed across billions of devices, it enables crypto wallets that users interact with exactly as they interact with banking apps or other sensitive applications: with a fingerprint or face scan. This eliminates the seed phrase UX barrier that has prevented mainstream adoption of self-custodial wallets.

Category: wallets security

Explore the full Web3 Glossary — 2,000+ expert-curated definitions. Need guidance? Talk to our consultants.