Skip to main content

How to Secure PayPal with a Passkey

Sign In to PayPal Without a Password

Web

From your PayPal account's Security settings, create a passkey, choose a hardware security key instead of your device's built-in biometrics, then connect your Seedkeeper PRO to register it.

Overview

PayPal supports passkeys, including hardware security keys like YubiKey - registered the same way your Seedkeeper PRO would be. This guide walks through setting that up.

You may still see a code in Europe

Under PSD2/SCA regulations in Europe, PayPal may still ask for an additional one-time code even after a successful passkey sign-in - typically only on a new or unrecognized device. Once that device is remembered, later passkey logins usually skip this extra step.

Why choose the security key option?

The default your browser offers - Face ID, Touch ID, Windows Hello, or a synced credential manager - creates a perfectly valid passkey.

Choosing your Seedkeeper PRO instead changes three things:

  • The key exists in one place only. A synced passkey is copied across every device on your cloud account, and that account is usually protected by a password. A hardware passkey is generated inside a certified secure element and physically cannot leave it.
  • Nobody else is in the chain. No provider account, no cloud, no vendor login standing between you and your own credentials.
  • It travels. The same card or ring works on your phone, your laptop, and a machine that isn't yours - a work computer, a shared workstation - leaving nothing behind.

See "Not All Passkeys Are Stored the Same Way" for the full comparison.

Step-by-Step Instructions

Step 1: Sign in to PayPal

Open paypal.com and sign in with your existing email and password.

Step 2: Go to Security settings

Click the settings icon (web) in the top right corner, then select Security.

Step 3: Create a passkey

Find the Passkeys section and select Create a Passkey.

Step 4: Choose a hardware security key

Your browser will prompt you to create the passkey, typically defaulting to your device's own biometrics or a synced credential manager. Look for an option like Use another device or Security key instead, so you can register your Seedkeeper PRO.

Step 5: Connect your Seedkeeper PRO

Insert your Seedkeeper PRO, or tap it against an NFC reader.

Step 6: Enter your PIN

Provide your passkey PIN to complete the registration.

PayPal confirms the passkey has been created, and you can now sign in using your Seedkeeper PRO instead of your password.

Managing Your Passkeys

From your account settings, open Passkey Management to review, disable, or remove any passkey registered to your account.

Official PayPal Resources

FAQ

Does adding a passkey remove my PayPal password?

No. You can still sign in with your password if you prefer - during login, look for an option like Try Another Way to see all available methods.

Will I still be asked for a 2FA code after setting up a passkey?

In Europe, possibly - see the note in the Overview above. This is a regulatory requirement (PSD2/SCA), not something specific to your Seedkeeper PRO.

Can I add more than one Seedkeeper PRO as a backup?

See Passkey Backup Strategy for a recommended setup.

What other services support passkeys with my Seedkeeper PRO?

Plenty - see Amazon, eBay, and Shopify for a few more.

Why register a Seedkeeper PRO instead of my phone's built-in passkey?

Because the key never leaves the device and is not copied anywhere. A synced passkey lives in a provider's cloud and is only as safe as your account with them; a Seedkeeper PRO passkey is generated inside an EAL6+ secure element and physically cannot be extracted. It also works on computers that aren't yours, which a phone-bound passkey does not. See Not All Passkeys Are Stored the Same Way.