Sign In More Securely with Passkeys

smartApps now supports passkeys as a second step when you sign in with a username and password. A passkey uses your device’s built-in security — fingerprint, face scan, or a physical security key — to confirm it’s really you after you enter your password. It replaces the previous email verification step with something significantly harder to intercept or compromise.

Before you start

Passkey-based MFA must be enabled by your administrator before you can register or use a passkey. If you don’t see the option to set one up, reach out to your admin.

Register a passkey

  1. Go to your account profile in smartApps.
  2. Navigate to the Security or Passkeys section.
  3. Click Add passkey.
  4. Follow your device’s prompt to complete registration — this will typically ask you to use your fingerprint, face recognition, or a hardware security key.
  5. Once registered, the passkey appears in your list of authentication methods. You can add more than one if you use multiple devices.

Sign in with your passkey

  1. Enter your username and password as usual.
  2. When prompted, complete the passkey verification using your device.
  3. Once confirmed, you’re signed in.

Remove a passkey

To remove a passkey you no longer use, go to your account profile, open the Security or Passkeys section, and click Delete next to the passkey you want to remove.

Limitations

Passkeys work on devices that support biometric authentication (fingerprint or face recognition) or a compatible hardware security key. Your administrator may also limit which device types can be used to store passkeys.

Passkey-based MFA applies to users who sign in with a username and password. If you sign in through your organization’s single sign-on (SSO), this doesn’t affect you.