What are passkeys and verification codes?

Passkeys give your account and your events an extra layer of protection. This article explains how both work and how to set them up.

Overview:

What is a passkey?

A passkey is a modern passwordless sign-in method. Instead of entering your email address and password, you can simply sign in using your fingerprint, facial recognition or device PIN. This is not only more convenient but also significantly more secure and helps protect you against phishing.

A passkey can completely replace the traditional sign-in method using a password and an authenticator app (MFA).

Create a passkey

We automatically suggest creating a passkey at various points, for example after you sign in. You can also create a passkey yourself at any time:

  1. In your Eventfrog account go to Settings, open the Security section and scroll down to Sign-in methods.
  2. Click Create passkey.
  3. Confirm the creation on your device using your fingerprint, facial recognition or device PIN.

Once your passkey has been created successfully, you can sign in without a password from now on. You will also receive a confirmation email whenever a new passkey is added to your account.

Manage passkeys

In the Security section you can see an overview of all passkeys linked to your account including those created on other devices. For each passkey you can:

  • change the name using Rename to make it easier to tell your devices apart,
  • view the last used date,
  • remove the passkey using Delete after a security confirmation.
Passkey EN

Sign in with a passkey

When you sign in, available passkeys are automatically offered depending on your device and browser – for example when you click the email address field.

Important to know: If you have already created a passkey but have not enabled MFA and still sign in using only your email address and password, we will send you a one-time verification code by email for additional security. You will need to enter this code before you can sign in.

Verification code when signing in as an event organiser

If you have at least one published event and have not enabled MFA, we will send you a verification code by email after you enter your password. Enter this code to confirm your sign-in. If you use a passkey, this step is not required.

How the verification code works

We send the code to the email address linked to your account. For security reasons, it can only be used once and is valid for 15 minutes.

  • Enter the code in the field provided and click Confirm.
  • If you do not receive an email, first check your spam folder and make sure the email address linked to your account is correct.
  • You can request a new code by clicking Resend email.

Never share your verification code with anyone. Eventfrog employees will never ask you for it. If you receive a code without having attempted to sign in or make a change yourself, please contact our support team immediately.

Does this also apply to the apps?

Yes, passkeys and verification codes also work in our apps. The only exception is signing in as a paired device using a pairing code.