Salesforce Passkeys: The Security Upgrade You Might Actually Like

Nobody likes being told they have to change the way they log in.

So when Salesforce started requiring passkeys, the reaction from many users was understandable: “Great. Another security step I have to figure out.”

But there’s a case to be made that passkeys are actually an upgrade—not just another hurdle.

Passkeys are designed to be more secure than traditional passwords and can also make signing into Salesforce and Quivr easier once they're set up. For financial advisors and RIAs managing sensitive client information, that combination matters.

Why Passkeys Are Different

Traditional passwords have a fundamental weakness: the website you're logging into has to store information that can be used to verify your password. Password managers improve things by helping you create and manage unique, complex passwords, but the basic password system still exists.

Passkeys work differently.

Instead of the website storing your actual secret, the credential stays with you. Salesforce can verify that you have the correct credential without storing your password itself.

That makes passkeys significantly more secure than the traditional password-based approach—and particularly valuable when the system you're protecting contains sensitive client data.

The Part That Makes Passkeys Easier

Here's where passkeys get interesting.

A passkey doesn't necessarily mean you need to carry around a physical security key or unlock your account with your fingerprint every time. Many password managers can store and manage passkeys for you.

For example, if your firm uses 1Password, you can save your Salesforce passkey there. Other password managers, including Dashlane, Keeper, and LastPass, also support passkey implementations.

Once it's set up, the process can look a lot like your existing login:

  1. Enter your Salesforce username and password.

  2. Salesforce asks for your passkey.

  3. Your password manager provides it.

  4. You're in.

And because the passkey can be managed through your password vault, it can be available across your laptop, desktop, phone, or other devices where you use that password manager.

A Better Approach to CRM Security

For financial advisors, security isn't optional. Your CRM contains information that deserves serious protection.

That's one reason the move toward phishing-resistant authentication is worth embracing, even if the initial setup feels like a hassle. Quivr is built on Salesforce, so Salesforce's security requirements apply to Quivr users as well.

The good news? Once the passkey is configured, the experience can actually become simpler than using an authenticator app. One Quivr team member found that after setting up a passkey through 1Password, logging in no longer required opening the Salesforce Authenticator app and approving the login manually.

That's the kind of security improvement worth getting excited about: better protection without adding more friction to your day.

The Bigger Picture for Advisory Firms

Passkeys are just one piece of a broader shift toward stronger security practices for financial advisor technology.

If your firm is already using a password manager, take advantage of its passkey capabilities where they're supported. And if you're being asked to set up a passkey for Salesforce, don't think of it as just another requirement to check off your list.

You're protecting your firm's systems, your team, and—most importantly—your clients' information.

Ready to see how Quivr can help you build a more efficient, workflow-driven advisory firm? Schedule a demo to see how Quivr can fit into your firm's processes.

Next
Next

Stop Wasting Time Chasing Client Information: How to Bring Your Entire Financial Planning Process Into One Place