Politics
Singpass passkeys available to Android users from Sep 9
Key Points
Singpass passkeys available to Android users from Sep 9 Support for desktop logins is planned by the end of 2026. SINGAPORE: Android users can start using Singpass passkeys from Wednesday (Sep 9), as the Government Technology Agency of Singapore (GovTech Singapore) expands the phishing-resistant login method beyond its initial beta launch for iPhone (iOS) users. GovTech Singapore said Android users will receive notifications through the Singpass app in phases, reminding them to create a passkey.
Singpass passkeys available to Android users from Sep 9
Support for desktop logins is planned by the end of 2026.
SINGAPORE: Android users can start using Singpass passkeys from Wednesday (Sep 9), as the Government Technology Agency of Singapore (GovTech Singapore) expands the phishing-resistant login method beyond its initial beta launch for iPhone (iOS) users.
GovTech Singapore said Android users will receive notifications through the Singpass app in phases, reminding them to create a passkey. Users are advised to keep their Singpass app updated to use the feature.
Passkey logins were first introduced in a beta launch for iPhone (iOS) users on Jun 30. GovTech Singapore said passkeys provide an additional layer of security while maintaining a smooth login experience.
The move comes as phishing remained Singapore's second most common scam last year, with losses of almost S$40 million (US$31.6 million).
A GovTech spokesperson said that as of Wednesday, about 800,000 users have created a passkey in the Singpass app.
Support for desktop logins is planned by the end of 2026, GovTech said.
GovTech Singapore said it will continue to work with agencies such as the Infocomm Media Development Authority and People’s Association to raise awareness of passkeys and support users who need help adopting them.
Unlike passwords, which can be stolen, or QR codes, which scammers can trick users into scanning, passkeys verify a private key stored on the user's device against a public key registered in the Singpass system.
Because no passwords or one-time passwords are entered or transmitted during login, there is nothing for scammers to intercept – even if a user lands on a fraudulent website.
Passkeys are an additional login option alongside existing authentication methods, including QR login, face verification and SMS one-time passwords.
If a device is lost or stolen, the Singpass app and the passkey on it will be automatically deactivated when the user sets up Singpass on another device.