polhenarejos/pico-fido
FIDO Passkey for Raspberry Pico and ESP32 observed · 2026-08-28
Health v2 · maintenance only
95/100
- Activity 99
- Release rhythm 87
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 57.5
- age_days: 1463
- days_rel: 10
- days_push: 7
- n_releases_24m: 9
Adoption not part of the score
1446 stars · 225 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Open-source firmware that turns a Raspberry Pi Pico (RP2040/RP2350) or ESP32-S3 microcontroller into a FIDO2 passkey authenticator, supporting CTAP 2.3, WebAuthn, U2F, OATH/TOTP, and vendor extensions like vaulted credential export. It is part of the PicoKeys ecosystem and is licensed under AGPL-3.0.
Use cases
- turn a Raspberry Pi Pico into a FIDO2 security key
- hardware-backed passkey for passwordless login
- two-factor authentication with a cheap USB token
- store TOTP and OATH codes on a physical device
- WebAuthn authenticator for browser sign-in
- backup and export passkeys between devices
- hardware-backed SSH and email signing alternatives
When to choose
- you want a FIDO2/U2F authenticator on a $4 microcontroller instead of a commercial YubiKey
- you need discoverable credentials, PIN verification, and OATH/TOTP in one device
- you want open-source, auditable firmware for your security key
- you need credential export/import via Pico Vault or backup with 24 words
When to avoid
- you need a general-purpose smart card, HSM, or OpenPGP token - use Pico HSM or Pico OpenPGP instead
- you require the strongest hardware protection on RP2040, which lacks Secure Boot/OTP key storage
- you need a commercial license without AGPL-3.0 source disclosure obligations
- you want a plug-and-play product rather than flashing firmware yourself
Facets
application · maturity active
auth cryptography security embedded security embedded-systems privacy developer-tools embedded iot cross-platform cli fido2 passkey webauthn u2f ctap totp hardware-authenticator raspberry-pi-pico esp32 usb-security-key yubikey-compatible firmware otp hmac-secret resident-keys
4 sources
- readme: https://github.com/polhenarejos/pico-fido · fetched 2026-08-28 · 3c94a8898074
- homepage: https://www.picokeys.com · fetched 2026-08-29 · 609a56c649fd
- site_page: https://www.picokeys.com/getting-started · fetched 2026-08-29 · 1e2bc3f66488
- site_page: https://docs.picokeys.com · fetched 2026-08-29 · 7939af5f0585
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| polhenarejos/pico-fido | main | 95 |
For agents
markdown · JSON · MCP: product_card(name="polhenarejos/pico-fido")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem