
內容簡介
### 總結
ASD Passkey for WordPress,在 WordPress 生態系統之外被稱為 JWT EAuth,是一項尖端認證服務,旨在通過將傳統密碼替換為高級方法(如生物識別、硬件安全鍵等)來增強線上安全性。隨著網路威脅變得日益複雜,基於密碼的系統更容易受到釣魚、憑證填充和數據洩露等攻擊的影響。有了 JWT EAuth,企業可以採用現代、安全的解決方案,不僅可以保護數據,還可以改善用戶體驗。
### 問題與答案
1. **JWT EAuth 有哪些重要好處?**
- 增強安全性,實現無密碼登入。
- 改善用戶體驗,支持生物識別和硬件鑰匙。
- 通過先進的加密和防釣魚技術建立信任。
2. **JWT EAuth 的主要特點有哪些?**
- 無需額外的 API 設置即可實現無縫集成。
- 支持標準通行證和非對稱加密。
- 支持企業 SMTP 用於郵件通知(專業版)。
- 可自定義郵件模板(專業版)。
- 支持使用 FedCM 登錄(專業版)。
3. **該外掛在處理用戶數據時如何確保隱私?**
- 數據收集:收集電子郵件或用戶名以啟動基於通行證的身份驗證流程;用戶設備在註冊時生成並安全存儲在服務器上的公鑰;暫時生成的身份驗證挑戰用於登錄驗證。
- 外部服務器:該外掛與 https://passwordless.alciasolusidigital.com/landing/privacyPolicy 上的服務器通信,用於身份驗證和驗證目的。不會將敏感資料如密碼發送或存儲在外部服務器上。
- 用戶同意:該外掛在處理或發送任何數據之前要求明確的用戶同意。這通過註冊期間的選擇方式完成。
- 第三方服務:該外掛不會與未經授權的第三方共享數據。任何第三方集成都是可選的並有清晰的文件記錄。
外掛標籤
開發者團隊
原文外掛簡介
ASD Passkey for WordPress, known as JWT EAuth outside the WordPress ecosystem, is a cutting-edge authentication service designed to enhance online security by replacing traditional passwords with advanced methods like biometrics (fingerprint, facial recognition) or hardware security keys. As cyber threats become increasingly sophisticated, password-based systems are more vulnerable to attacks such as phishing, credential stuffing, and data breaches.
With JWT EAuth, businesses can adopt a modern, secure solution that not only protects data but also improves user experience.
Key Benefits:
* Enhanced security with passwordless login.
* Improved user experience with biometric and hardware key support.
* Builds trust through advanced encryption and anti-phishing technology.
Major features:
* Seamless integration without additional API settings.
* Standard passkey and asymmetric encryption support.
* Corporate SMTP support for email notifications (pro).
* Customizable email templates (pro).
* Supports login using FedCM (pro).
Privacy
This plugin respects user privacy and follows best practices for data protection. Below are the details regarding how user data is handled when using this plugin:
Data Collected:
Email or username: Used to initiate the passkey-based authentication process.
Public key: Generated by the user’s device during registration and stored securely on the server.
Authentication challenge: Temporarily generated for login verification.
External Servers:
The plugin communicates with the server at https://passwordless.alciasolusidigital.com/landing/privacyPolicy for the purpose of authentication and verification. No sensitive data such as passwords are sent or stored on external servers.
User Consent:
The plugin requires explicit user consent before any data is processed or sent. This is done via an opt-in method during registration.
Third-Party Services:
This plugin does not share data with unauthorized third parties.
Any third-party integrations are optional and clearly documented.
For detailed information on the plugin’s privacy practices, please visit:
Privacy Policy
