DiyaOS Passwordless identity
DiyaOS Auth
Recovery Posture
Confirm the account has enough trusted paths for passwordless recovery before a phone, laptop, or security key is lost.Readiness
No principal selected Load the directory or choose a principal before evaluating recovery readiness.
Backup channel No principal selected is the current local recovery channel.
Active credential 0 active credential records in the auth directory.
Device-loss fallback Add a backed-up passkey or FIDO2 security key before relying on this account.
OTP recovery policy Recovery OTP is valid for - minutes and periodic verification runs every
- days.
Credential Inventory
No credential inventory is available for this principal.
No Password Reset
There is no password to recover This page verifies the account holder, records the recovery intent, and prepares credential replacement.
Lost devices need replacement credentials Production recovery must revoke risky credentials through an approved admin workflow before a new passkey
becomes trusted.