

When the PIN is created, it establishes a trusted relationship with the identity provider and creates an asymmetric key pair that is used for authentication.

A PIN is local to the device, never transmitted anywhere, and it isn't stored on the server. The password can be intercepted in transmission or obtained from a server. PIN is local to the deviceĪn online password is transmitted to the server. If you want to sign in on multiple devices, you have to set up Hello on each device. The PIN can't be used anywhere except on that specific device. Someone who obtains your online password can sign in to your account from anywhere, but if they obtain your PIN, they'd have to access your device too. That PIN is useless to anyone without that specific hardware. One important difference between an online password and a Hello PIN is that the PIN is tied to the specific device on which it was set up.
