Passkey Creation Issue on vault.bitwarden.com

I wasn’t able to reply in the same thread because it’s closed, so I’m opening a new one. I tried to record or create a passkey to log in to vault.bitwarden.com in the future, but I’m getting this same window again.

LibreWolf: 145.0.2-2 (64-bit)
BitWarden Plugin: 2025.11.2
OS: Windows 11 LTSC 24H2 26100.7309

Hello,

I think it’s intentional; you probably shouldn’t save your Bitwarden vault’s passkey in a Bitwarden vault. I verified that this doesn’t work on both Firefox and Edge with Bitwarden’s account.

You can try working with a demo at:

Yes… seems those guardrails are still in place:

… but maybe they’re not around forever:

1 Like

Thanks for the response.

I don’t have a USB and can’t find one at the moment… is there a way to save the passkey somewhere else so it doesn’t have to be on a USB? :flushed_face:

Ha… I can add, that those “guardrails” can already be circumvented here.

If you choose the “Phone” route here, you can store the passkey in the Bitwarden vault (at least on my Android 15 device I was able to store the passkey via the BW mobile app).

But it comes with some caveats: besides the possibility of “circular dependency”, BW can’t store it’s own login-passkeys “with encryption”, as the BW vault itself can’t store passkeys “with PRF”. (see this feature request: Support for Storing PRF-Capable Passkeys in Bitwarden Vault)

1 Like

I was not thinking on the phone either… :flushed_face:

Maybe better for the phone… :sweat_smile:

Is Windows Hello enabled on your computer? If you enable it, you should be able to store the passkey directly on your computer:

 

FYI, the thread that you linked is not closed (but it is also not an appropriate location for your question, so you were right to start your own topic).

I may have read before, that Windows Hello is not available on Windows 11 LTSC - but I don’t know for sure…

1 Like

No… Windows Hello is not available for Windows 11 LTSC… :flushed_face:

Then a hardware security key seems to be your only remaining option.

That is, unless you want to set up a separate Bitwarden account to store the passkey (without encryption enabled), or store the passkey in a competing password manager like 1Password (which can support PRF encryption).

If it’s allowed to store the passkey on a separate Bitwarden account without encryption enabled, wouldn’t it be better to store it locally (nas storage) or somewhere in the cloud where I can have encryption? Since I can’t use a USB or a mobile device to save the passkey.

You could do this with KeepassXC, but as far as I know, it doesn’t (yet) support encryption for passkeys.

1Password would allow you to do this.

To be clear, your passkey data is going to be encrypted, regardless. When I say with/without encryption, I’m referring to the ability to decrypt your Bitwarden vault with the passkey alone (i.e., without needing to enter your master password after completing the passkey authentication).