Passwordless authentication
Signing in without a password at all, using a device, biometric, or security key instead.
Removing the password removes the thing that gets phished, reused, guessed, and leaked. Windows Hello, passkeys, and hardware keys all authenticate with a private key held on the device and unlocked locally by a PIN or biometric.
The usual obstacle is not technology but the long tail: shared workstations, legacy applications that demand a password, and staff without suitable devices. Most organizations run a hybrid for a while rather than switching in one step.
Where this comes up
Passwordless authentication sits inside our identity and access work. If you are trying to work out what this means for your own environment rather than in the abstract, that is the page worth reading next, and a short call will get you a straight answer faster than either.