-
Notifications
You must be signed in to change notification settings - Fork 0
passkeys
Neural Labs supports passkey login for accounts that have already authenticated with Microsoft. A passkey is an additional sign-in method for the same approved account; it cannot create an account, bypass approval, reactivate a disabled account, or change a role.
- Sign in with Microsoft, or link Microsoft under Settings → Security → Sign-in methods.
- In the Passkeys row, name the device or credential and select Create passkey.
- Complete the browser or operating-system prompt using the device unlock, fingerprint, face, PIN, security key, or cross-device flow it offers.
After verification succeeds, Security immediately adds the passkey to the list, shows its localized creation date and time, and reconciles the list with the server. Other open Security windows in the same desktop update from the same account-change signal. A manual browser refresh is not required.
On later visits, select Use a passkey on the Neural Labs login page. The passkey is discoverable, so an email address is not required first.
Passkeys require a WebAuthn-capable browser and the deployment's configured HTTPS public origin. The relying-party ID is the public hostname. Moving the deployment to another hostname requires signing in with Microsoft and creating new passkeys for that hostname.
The authenticator retains the private key. Neural Labs stores only the public credential, signature counter, transport and backup hints, a user-provided label, and timestamps in PostgreSQL. Registration and authentication require user verification. One-use ceremony challenges expire after five minutes.
Users can remove registered passkeys from Security. Removal prevents future Neural Labs login with that credential, but the browser or platform may still show its local copy until the user removes it from their credential manager.
Maintained in wiki/. To update these pages, edit the source documentation and follow the publishing guide.
Quick setup · Source repository
- Deploy with your agent
- Deploy your instance
- Alshival-managed installations
- Raspberry Pi deployment
- Connect AI accounts
- Enable Microsoft sign-in
- Troubleshoot setup
- Your first session
- Alshival
- Team Chats
- Files and previews
- Terminal and voice
- VS Code
- Skills
- Automations
- Desktop layout
- Passkeys
- Routine administration
- Settings
- Authentication
- Sharing and privacy
- Provider tools
- Backup and restore
- Runtime upgrades
- Admin update settings and host worker
-
Native runtime migration: preservation, probation and recovery.
-
Connect Anthropic: guided sign-in and reconnect.
-
Deploy websites and apps: the built-in deploy skill, local hosting, wildcard DNS, TLS, and custom domains.