Passkey auth broker

Middle auth domain passkey.potenzia.biz. Passkeys are scoped to RP ID potenzia.biz. App domains redirect here, then return with a signed token.

Role: broker

Register / Login

App logins should start from the client domain (they hit authorize.php). Use this page to register keys or test login on the broker itself.

This server

Loading…

How to test

  1. Set role=broker, rp_id to this auth domain’s eTLD+1, HTTPS origin in allowed_origins.
  2. Set broker.shared_secret and allow-list apps in client_apps.
  3. Register a passkey here.
  4. From a client app domain, click Login — you will return to authorize.php, then back to the app.

Stored credentials

Loading…

Log