📚ApexMentum Help
Sign in →

Passkeys (passwordless sign-in)

Sign in with Face ID, Touch ID, Windows Hello, or a hardware security key — no password needed.

Passkeys (passwordless sign-in)

A passkey is a passwordless way to sign in. Instead of typing a password, you authenticate with your device — Face ID on iPhone or Mac, Touch ID, Windows Hello, or a hardware security key like a YubiKey.

Passkeys are simultaneously more secure and more convenient than passwords. They cannot be phished, can't be reused across sites, and don't need to be remembered. We recommend them as your primary daily sign-in method.

What you can use passkeys with

  • Apple devices — Face ID / Touch ID, synced across your Apple ID
  • Android devices — fingerprint or device PIN, synced via Google Password Manager
  • Windows — Windows Hello (face, fingerprint, or PIN)
  • Cross-device sign-in — scan a QR code from your phone to sign in on a different computer
  • Hardware keys — YubiKey, Titan key, or any FIDO2-compatible key

Add a passkey

  1. Click your name in the top-right and open Account settings.
  2. Go to the Security tab.
  3. Click Add a passkey.
  4. Your device prompts you to authenticate (Face ID, Touch ID, etc.).
  5. The passkey is created and saved to your device's password manager / Keychain.

You can add multiple passkeys — one per device is common. The passkey on your iPhone syncs to your Mac via iCloud automatically; same with Android and Google.

Sign in with a passkey

On the login page, click Sign in with a passkey (or just start typing your email — modern browsers may auto-suggest your passkey). Authenticate on your device, and you're in. No password needed, no 2FA prompt.

What if I'm on someone else's computer?

You can sign in to ApexMentum from a borrowed computer using your phone:

  1. On the borrowed computer, go to ApexMentum and click Sign in with a passkey.
  2. A QR code appears.
  3. Open your phone's camera and scan the QR.
  4. Authenticate on your phone (Face ID, Touch ID).
  5. The borrowed computer signs you in.

Your passkey never leaves your phone.

Passkeys vs. 2FA

Passkeys replace the password + 2FA combo with a single stronger factor. If you have a passkey set up, you don't also need to enter a 2FA code — the passkey is already a strong second factor by definition (it requires possession of your device).

If you remove your passkey or sign in by password instead, the 2FA prompt comes back.

Remove a passkey

From Security → Passkeys, click any passkey and choose Remove. Useful when you're decommissioning a device or replacing a lost phone.

What if I lose my only passkey?

Your password still works. Use it to sign in, then add a new passkey to your new device. We recommend always keeping a password as a backup, even if you primarily use passkeys.

Was this article helpful?
See something wrong? Edit this article on GitHub