75% of people have enabled a passkey on at least one account, but only 49% actually use passkeys regularly when offered the choice. That 26-point gap is the story of passkey adoption in 2026: awareness has effectively been won at 90%, setup is widespread, and habitual use still lags well behind both. On the enterprise side the same pattern repeats in sharper form, with 82% of organizations naming fully passwordless authentication as a goal and 28% having reached it. The FIDO Alliance now estimates 5 billion passkeys in circulation. The figures below come from the FIDO Alliance’s 2026 reporting, based on a Sapio Research survey of 11,000 consumers across ten countries.
TL;DR
- 90% of people are now aware of passkeys (FIDO Alliance, 2026)
- 75% have enabled a passkey on at least one account (FIDO Alliance, 2026)
- Only 49% use passkeys regularly when available (FIDO Alliance, 2026)
- The gap between enabling and regular use is 26 points (derived from FIDO figures)
- An estimated 5 billion passkeys are in use worldwide (FIDO Alliance, 2026)
- 68% of organizations have deployed or are deploying passkeys for employees (FIDO Alliance, 2026)
- 82% name fully passwordless authentication as an ultimate goal (FIDO Alliance, 2026)
- Only 28% have achieved fully passwordless workforce authentication (FIDO Alliance, 2026)
- The gap between goal and achievement is 54 points (derived from FIDO figures)
- The survey covered 11,000 consumers (FIDO Alliance, 2026)
- Ten countries were sampled across four continents (FIDO Alliance, 2026)
- Fieldwork ran in April 2026 (Sapio Research)
- Findings were published on World Passkey Day in May 2026 (FIDO Alliance)
1. Awareness Is No Longer the Problem
For most of the passkey rollout, the industry’s stated blocker was that nobody knew what a passkey was. That argument has expired. 90% of people are now aware of passkeys, up significantly year over year, which puts awareness at a level most consumer security technologies never reach. Whatever is holding adoption back in 2026, it is not that people have never heard of the thing.
| Metric | Value | Source |
|---|---|---|
| Awareness of passkeys | 90% | FIDO Alliance, 2026 |
| Direction versus prior year | up significantly | FIDO Alliance, 2026 |
| Have enabled a passkey on at least one account | 75% | FIDO Alliance, 2026 |
| Use passkeys regularly when available | 49% | FIDO Alliance, 2026 |
| Aware but not enabled | approx. 15 points | Derived from FIDO figures |
| Enabled but not regular users | approx. 26 points | Derived from FIDO figures |
| Estimated passkeys in use worldwide | 5 billion | FIDO Alliance, 2026 |
| Survey sample | 11,000 consumers | FIDO Alliance, 2026 |
The derived rows are subtraction on the three reported percentages and describe funnel drop-off rather than separately measured populations. Source: FIDO Alliance reports accelerating global passkey adoption.
2. The Enable-to-Use Gap
The most consequential number in this dataset is the one between two others. 75% have enabled a passkey somewhere, yet only 49% use passkeys regularly when the option exists, meaning roughly one in three people who set one up do not habitually reach for it. That pattern is familiar from two-factor authentication, where enrolment consistently ran ahead of routine use for years.
| Metric | Value | Source |
|---|---|---|
| Enabled at least one passkey | 75% | FIDO Alliance, 2026 |
| Use passkeys regularly when available | 49% | FIDO Alliance, 2026 |
| Absolute gap | 26 points | Derived from FIDO figures |
| Share of enablers who are regular users | approx. 65% | Derived from FIDO figures |
| Awareness ceiling | 90% | FIDO Alliance, 2026 |
| Conversion from awareness to enablement | approx. 83% | Derived from FIDO figures |
| Conversion from awareness to regular use | approx. 54% | Derived from FIDO figures |
| Estimated credentials in circulation | 5 billion | FIDO Alliance, 2026 |
Awareness converts to enablement at roughly 83% and to regular use at roughly 54%, so the leak is concentrated at the habit stage rather than the setup stage. That distinction changes what a fix looks like: campaigns and prompts move people from awareness to enablement, but nothing about a one-time setup flow determines whether someone reaches for a passkey the next time a login screen appears. The deciding factor there is whether the passkey path is faster and more reliable than the password path at the moment of use, which is an implementation question owned by each individual service rather than by the standards body. Broader credential context sits in our password security statistics. Source: FIDO Alliance 2026 passkey report coverage.
3. Enterprise Rollout
Organizations are moving faster than individuals on deployment and slower on completion. 68% of organizations have deployed or are actively deploying passkeys for employee sign-ins, and 82% say fully passwordless authentication is an ultimate goal, but only 28% have achieved it. The 54-point gap between goal and achievement is wider than anything on the consumer side, which is what you would expect given legacy system dependencies.
| Metric | Value | Source |
|---|---|---|
| Organizations deployed or deploying passkeys | 68% | FIDO Alliance, 2026 |
| Name fully passwordless as an ultimate goal | 82% | FIDO Alliance, 2026 |
| Have achieved fully passwordless workforce authentication | 28% | FIDO Alliance, 2026 |
| Gap between goal and achievement | 54 points | Derived from FIDO figures |
| Share of goal-setters who have arrived | approx. 34% | Derived from FIDO figures |
| Consumer regular-use rate for comparison | 49% | FIDO Alliance, 2026 |
| Consumer enablement rate for comparison | 75% | FIDO Alliance, 2026 |
| Organizations neither deployed nor deploying | approx. 32% | Derived from FIDO figures |
Enterprise deployment at 68% while completion sits at 28% describes an industry mid-migration, where passkeys have been added as an option alongside passwords rather than replacing them. That intermediate state is the expensive one: organisations carry the cost of running two authentication systems while retaining the attack surface of the weaker one. Credential-management context sits in our password manager statistics, and the threat side in our phishing statistics. Source: FIDO Alliance World Passkey Day 2026 announcement.
4. How the Data Was Collected
Methodology matters more than usual here, because the publisher is also the standards body promoting the technology. Sapio Research surveyed 11,000 consumers across ten countries in April 2026 on behalf of the FIDO Alliance, spanning North America, Europe, Asia-Pacific, and South Asia. The country mix is unusually broad for consumer security research, which strengthens the global claims relative to single-market surveys.
| Metric | Value | Source |
|---|---|---|
| Research agency | Sapio Research | FIDO Alliance, 2026 |
| Sample size | 11,000 consumers | FIDO Alliance, 2026 |
| Number of countries | 10 | FIDO Alliance, 2026 |
| Countries included | US, UK, France, Germany, Australia, Singapore, Japan, South Korea, China, India | FIDO Alliance, 2026 |
| Fieldwork period | April 2026 | Sapio Research |
| Publication event | World Passkey Day, May 2026 | FIDO Alliance |
| Approximate respondents per country | 1,100 | Derived from FIDO figures |
| Publisher relationship to the technology | standards body and advocate | FIDO Alliance |
The per-country figure assumes even distribution, which the published summary does not confirm, so treat it as indicative. Source: FIDO Alliance report as carried by Las Vegas Sun.
5. What the Numbers Do Not Say
Read together, the 2026 figures describe addition rather than replacement. Even at 90% awareness and 75% enablement, fewer than half of people use passkeys regularly, and only 28% of organizations have removed passwords from the workforce. Passwords are not being retired; passkeys are being layered on top of them, which means the attack surface those passwords represent has not gone anywhere.
| Metric | Value | Source |
|---|---|---|
| Awareness | 90% | FIDO Alliance, 2026 |
| Enablement | 75% | FIDO Alliance, 2026 |
| Regular use | 49% | FIDO Alliance, 2026 |
| Organizations fully passwordless | 28% | FIDO Alliance, 2026 |
| Organizations still not deploying | approx. 32% | Derived from FIDO figures |
| Credentials in circulation | 5 billion | FIDO Alliance, 2026 |
| What the credential count measures | credentials, not people | FIDO Alliance, 2026 |
| Whether passwords are being removed | mostly not yet | Derived from FIDO figures |
The 5 billion figure is the one most likely to be misread as a user count. It counts credentials, and a single person with passkeys on a phone, a laptop, and a dozen services contributes many.
There is a second reason the transition is slower than the headline numbers imply. A password can be typed anywhere, by anyone, on any device, which is precisely what makes it insecure and also what makes it universally convenient. A passkey is bound to hardware and to a platform ecosystem, so account recovery, shared devices, and cross-platform sign-in all become design problems that each service has to solve independently. Until those flows feel as reliable as typing a password, the rational user behaviour is to keep the password as a fallback, which is exactly the behaviour the enable-versus-use gap describes. Identity-theft context sits in our identity theft statistics. Source: Descope analysis of passkey trends.
Summary: Passkey Adoption by the Numbers
| Metric | Value | Source |
|---|---|---|
| Awareness of passkeys | 90% | FIDO Alliance |
| Enabled at least one passkey | 75% | FIDO Alliance |
| Use passkeys regularly when available | 49% | FIDO Alliance |
| Enable-to-use gap | 26 points | Derived |
| Awareness-to-enablement conversion | approx. 83% | Derived |
| Awareness-to-regular-use conversion | approx. 54% | Derived |
| Passkeys in use worldwide | 5 billion | FIDO Alliance |
| Organizations deployed or deploying | 68% | FIDO Alliance |
| Name passwordless as an ultimate goal | 82% | FIDO Alliance |
| Achieved fully passwordless workforce | 28% | FIDO Alliance |
| Goal-to-achievement gap | 54 points | Derived |
| Organizations not deploying | approx. 32% | Derived |
| Survey sample | 11,000 consumers | FIDO Alliance |
| Countries surveyed | 10 | FIDO Alliance |
| Research agency | Sapio Research | FIDO Alliance |
| Fieldwork period | April 2026 | Sapio Research |
| Publication event | World Passkey Day, May 2026 | FIDO Alliance |
| Approximate respondents per country | 1,100 | Derived |
| What the 5 billion figure counts | credentials, not users | FIDO Alliance |
| Whether passwords are being replaced | added alongside, mostly | Derived |
Methodology and Sources
- Awareness, enablement, regular use, enterprise deployment, passwordless goals, the credential total, and survey methodology all come from the FIDO Alliance’s 2026 passkey reporting, published on World Passkey Day in May 2026 and based on a Sapio Research survey of 11,000 consumers across ten countries fielded in April 2026 (BusinessWire release, Yahoo Finance carry, Las Vegas Sun carry, Morningstar carry).
- Independent analysis of the same release was checked against the primary figures (Descope 2026 FIDO report analysis, Descope passkey trends, MojoAuth adoption analysis).
- Data watch: the FIDO Alliance is the standards body that developed passkeys and advocates for their adoption, so it is not a neutral observer of its own success metrics. Its methodology is disclosed and the sample is large and multi-country, but no independent body publishes comparable figures, meaning there is no external check on these numbers. The 5 billion credential estimate counts passkeys rather than people and cannot be converted into a user count. Self-reported “regular use” is not measured against telemetry, so it may overstate actual behaviour in the direction respondents believe is desirable. The ten surveyed countries skew toward high-income and high-connectivity markets, so global extrapolation is weak. Rows marked as derived are arithmetic on the published percentages, not separately measured findings.
- Last updated: August 1, 2026. We update this roundup quarterly, and the next major refresh is expected around World Passkey Day 2027.