How do I log in to Keeper with Windows Hello, Touch ID, or biometric login?
How this works depends on which Keeper app you're using. The Desktop App uses your operating system's native Windows Hello or Touch ID directly. The Browser Extension and Web Vault use a separate biometric login built on WebAuthn (the same underlying standard as passkeys), which is still backed by your device's Windows Hello, Touch ID, or PIN, but set up and triggered differently.
Desktop App on Windows (Windows Hello, Windows 10+): Keeper works with Windows Hello, using facial recognition, a fingerprint reader, or a PIN to unlock your vault.
- Open the Account Dropdown Menu.
- Click Settings > Security.
- Toggle Windows Hello Login on.
- Read the notification and click Enable.
If Windows Hello isn't configured on your device yet, you'll be prompted to set it up in Windows Settings first, then return to Keeper to finish enabling it.
Once enabled, Windows Hello will prompt you automatically the next time you log in. Click Cancel at any point to fall back to your Master Password instead.
Note: this requires a specific version of Keeper Password Manager App, installed either from the app installer (64-bit) on our website or from the Microsoft Store, older installs won't show this option until updated.
Desktop App on Mac (Touch ID): Keeper works with Touch ID to unlock your vault with a fingerprint instead of your Master Password or SSO.
- Open the Account Dropdown Menu.
- Click Settings > Security.
- Toggle Touch ID on.
If Touch ID isn't set up on your Mac yet, enable it in your Mac's system settings first, then return to Keeper.
Once enabled, tap the Touch ID icon on the login screen to unlock your vault. Click Cancel to log in with your Master Password or SSO instead.
Browser Extension (Chrome, Edge, and other Chromium-based browsers) and Web Vault: Instead of the native Windows Hello or Touch ID toggle above, these use Keeper's Biometric Login with Passkeys feature, built on WebAuthn, which is still backed by your device's Windows Hello, Touch ID, PIN, or a registered security key, but set up and triggered differently from the Desktop App.
Setting it up: New users can enable it by selecting Set Up Now from the getting started prompt. Existing users may see a similar prompt appear on login (choosing "Don't Show This Again" dismisses it permanently). Either way, Keeper will show your device's local authentication prompt (Windows Hello, Touch ID, or PIN); once you complete it, biometric login is enabled for the Web Vault.
Managing it: You can turn biometric login on or off at any time, or manage registered passkeys, from Account Settings > Security > Biometric Login.
Logging in: Once enabled, choose the biometric login option on the sign-in screen and confirm with your device's local method. If your vault is offline, biometric login is temporarily unavailable and you'll need your Master Password until you're back online.
Note: for business/enterprise accounts, biometric login may be restricted by the account's Keeper Administrator.