Download the PHP package ophelios/php-webauthn-passkey without Composer

On this page you can find all versions of the php package ophelios/php-webauthn-passkey. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.

FAQ

After the download, you have to make one include require_once('vendor/autoload.php');. After that you have to import the classes with use statements.

Example:
If you use only one package a project is not needed. But if you use more then one package, without a project it is not possible to import the classes with use statements.

In general, it is recommended to use always a project to download your libraries. In an application normally there is more than one library needed.
Some PHP packages are not free to download and because of that hosted in private repositories. In this case some credentials are needed to access such packages. Please use the auth.json textarea to insert credentials, if a package is coming from a private repository. You can look here for more information.

  • Some hosting areas are not accessible by a terminal or SSH. Then it is not possible to use Composer.
  • To use Composer is sometimes complicated. Especially for beginners.
  • Composer needs much resources. Sometimes they are not available on a simple webspace.
  • If you are using private repositories you don't need to share your credentials. You can set up everything on our site and then you provide a simple download link to your team member.
  • Simplify your Composer build process. Use our own command line tool to download the vendor folder as binary. This makes your build process faster and you don't need to expose your credentials for private repositories.
Please rate this library. Is it a good library?

Informations about the package php-webauthn-passkey

PHP WebAuthn Passkey

💿 Installation and dependencies

Install with Composer:

Requirements: PHP >= 8.4

Add the required table into your database. The example below if for PostgreSQL:

Replace the <YOUR USER ID REFERENCE> with the column name of your user identifier.

The identifier column if of type UUID given by gen_random_uuid() which is included in the extension pgcrypto. You can enable it with CREATE EXTENSION IF NOT EXISTS "pgcrypto"; as shown above.

🌱 Usage

Create the broker instance

First, create the broker instance you will use to interact with the database.

If you already have a table and want to use the PRF extension, add the column:

Create your registration Controller

Create your authentication Controller

Add routes exception to the CSRF middleware

Add the following exception pattern to the CSRF middleware in your config.yml file for a Zephyrus-based project.

Front-end module (ESM) for passkey registration and login

We provide an ES module you can use to handle both Passkey registration (create) and authentication (login) with configurable endpoints.

Registration (create) example with callbacks:

Login (assertion) example with callbacks:

Programmatic usage (no UI binding):

Experimental: PRF-based deterministic seed (opt-in)

Notes on PRF-derived seed usage:

  • Unfortunately, not all authenticators support PRF, as this is a client opt-in extension, you cannot enforce it. I would highly recommend keeping a fallback solution. Currently, only linux-based platform authenticators, macOS/iOS, android and certain authenticator app support PRF.
  • The derived PRF output is a stable and cryptographically strong 32-byte material that can be used as a seed for encryption. It is not a secret by itself. And thus, cannot and should not be used as one.

All versions of php-webauthn-passkey with dependencies

PHP Build Version
Package Version
Requires php Version >=8.4
web-auth/webauthn-lib Version ^4.9.2
symfony/serializer Version ^v7.3.1
symfony/property-info Version ^v7.3.1
phpdocumentor/reflection-docblock Version ^5.3.0
symfony/property-access Version ^v7.3.1
Composer command for our command line client (download client) This client runs in each environment. You don't need a specific PHP version etc. The first 20 API calls are free. Standard composer command

The package ophelios/php-webauthn-passkey contains the following files

Loading the files please wait ...