# Passkey — the express lane for users you've already verified > Passkeys give returning users one-touch biometric sign-in — phishing-resistant, sub-second, nothing to type. OTPless handles the full lifecycle: verify, enrol, sign-in, recovery. ## How it works A passkey is a FIDO2 / WebAuthn credential bound to the device biometric. After a user is verified once, OTPless enrols a passkey so future sign-ins are a single biometric tap. ## FAQ **What is a passkey?** A phishing-resistant FIDO2/WebAuthn credential that lets returning users sign in with one-touch biometrics — nothing to type or phish. **Does OTPless manage the lifecycle?** Yes — verify, enrol, sign-in, and recovery, without you building WebAuthn plumbing. Talk to our team: https://otpless.com/talk-to-sales.html