---
title: Password stage
slug: password-stage
description: Learn about passwordless authentication methods and how to verify user identity in this document. Explore direct authentication using authenticators and discover how it is supported only for WebAuthn devices. Dive into the second method that allows users 
docTags: 
createdAt: 2023-07-19T12:45:55.996Z
---

The Password prompt is a standard way of verifying the identity of the `pending_user`. This stage also enables the choice of the authentication source for the user.

### Passwordless authentication

There are two distinct methods to configure passwordless authentication. One method is to directly authenticate users with their authenticator, which is only supported for WebAuthn devices.&#x20;

::::WorkflowBlock
:::WorkflowBlockItem
**Direct authentication using authenticator:** Passwordless authentication currently only supports WebAuthn devices, like security keys and biometrics. For an alternate passwordless setup, see Password stage, which supports other types. To configure passwordless authentication, create a new Flow with the delegation set to *Authentication*.
:::

:::WorkflowBlockItem
**Dynamically skip the password stage**
:::
::::

As first stage, add an *Authentication validation* stage, with the WebAuthn device class allowed. After this stage you can bind any additional verification stages. As final stage, bind a *User login* stage.

Users can either access this flow directly via it's URL, or you can modify any Identification stage to add a direct link to this flow. The second method involves dynamically skipping the password stage based on the user's device. The documentation for this method can be found [here](https://goauthentik.io/docs/flow/stages/authenticator_validate/#passwordless-authentication).
