UK.gov begins killing off passwords for 23 million users
First reported by The Register ·
You can ditch passwords for government services, making logins faster and more secure.
The UK government is rolling out passkeys to over 23 million users of GOV.UK One Login, allowing them to authenticate using biometrics or device PINs instead of traditional passwords and two-factor authentication (2FA) codes. This initiative aims to enhance security by making accounts more resistant to phishing attacks and to reduce operational costs. Passkeys are already used for nearly 10% of daily One Login sign-ins and have saved the government approximately £600 per day on SMS authentication messages. The transition is optional, with users able to continue using passwords. GOV.UK One Login serves as a unified account for various government services, including state pension and tax management.
The widespread adoption of passkeys by the UK government signifies a major step towards passwordless authentication in public services, potentially influencing other governments and large-scale digital identity initiatives. By leveraging a technology resistant to common phishing tactics, the UK aims to significantly reduce fraud and improve user experience. This move also highlights the tangible cost savings achievable through modern authentication methods, shifting expenditure from SMS charges to more robust security infrastructure.
This rollout impacts millions of UK citizens by simplifying access to essential government services while bolstering their digital security. It sets a precedent for how public sector IT can embrace advanced authentication, moving beyond legacy systems. Future developments will likely focus on the rate of user adoption for passkeys and whether this model will be expanded to other government platforms or mandated for certain services, further accelerating the decline of traditional password-based logins.
AI-written summary. May contain errors.