btw, there is a lot of upvotes to this, which I suppose is mostly about convenience than security itself because most of the people here will use passkeys as an additional auth method, instead of deactivating the password method.
I think a bigger security feature is to have sessions management: https://kagifeedback.org/d/539-account-session-management/5
Why? Imagine you have the passkey feature enabled along the password. Somehow, someone discovered your password, they will just login with that password, bypassing the passkey method, and you will never even know if someone is using your account. There isn't successful login alert emails yet.
heksesang Passkeys would make it a lot easier to log into new devices. Say I want to use Kagi on a public library computer, or when I am at a friend's place and using their computer to look something up, using password + 2FA is a lot more cumbersome than just scanning a QR code and logging in from my phone.
Imagine people with Kagi everywhere and not even knowing where the account is active (not judging the act itself, I do the same)