If you value your Google Account, do not set up a passkey.
The problem with a Passkey is it is tied to your hardware, and so if you wipe your phone, Google will tell you that you cannot have them call you for 2-step because you already have a "more secure method" available. But since you have wiped your phone, the passkey it seeks is gone.
If I was not signed in elsewhere and able to remove the passkey from the account, I would be locked out.
It would not have been a big deal, since I only created a dummy account with nothing of value. But I am unsure how many dummy accounts Google would let me create, so I rather not generate a new one.
#Google #Passkey #Security #GrapheneOS