Contact salesSign inSign up
AuthsignalAuthsignal
Product
Passwordless / multi-factor authentication (MFA)
Drop-in authentication
Passkeys
Biometric authentication
Risk-based authentication
WhatsApp OTP
Authenticator apps (TOTP)
App verification
Push authenticationQR code verificationIn-app verification
SMS OTP
Email OTP
Magic links
See all authenticators
See less authenticators
Palm biometrics
Contactless payments & identity verification
Flexible integration modes
Pre-built UI
Low code
UI components
Customizable
Custom UI
Flexible
Digital credentials API Beta
Authenticate customers instantly using digital credentials
Session management
Keep users signed in across web and mobile after authentication
Fraud Controls
Rules and policies engine
Step-up authentication
No-code rule creation
Risk alerts
User observability
Audit trails
Dynamic linking
Why Authsignal?
Complete authentication infrastructure from enrollment to step-up auth, modular by design
Solutions
By USE CASE
View All
Account takeovers (ATO)
Go passwordless
Call center
SMS cost optimization
Existing apps
QR code payments
Step-up MFA
Palm biometrics payments
By INDUSTRY
View All
Financial services
Marketplace
e-Commerce
FinTech
Crypto
Healthcare
By Integration (identity provider)
Amazon Cognito
Azure AD B2C
Duende IdentityServer
Keycloak
Auth0
NextAuth.js
Custom identity provider
By ROLe
Engineers
Product
Passwordless / Multi-factor Authentication (MFA)
Flexible Integration Modes
Pre-built UI · Low code
UI Components · Customizable
Custom UI · Flexible
Digital credentials API Beta
Authenticate customers instantly using digital credentials
Session management
Issue JWT access and refresh tokens
Why Authsignal?
Plug in Authsignal to elevate your IDP — effortless integration with any architecture.
Drop-in Authentication
Passkeys
Biometric authentication
WhatsApp OTP
Risk-based authentication
SMS OTP
Email OTP
Magic links
Authenticator apps (TOTP)
Push notifications
App verification
Push authenticationQR code verificationIn-app verification
Palm Biometrics
Contactless payments & identity verification
Fraud Controls
Rules and Policies Engine
Step-up Authentication
No Code Rule Creation
Risk Alerts
User Observability
Audit Trails
Use Cases
Financial services
Account takeovers (ATO)
Marketplace
Go passwordless
e-Commerce
Solutions
By Use Case
Account takeovers (ATO)
Go passwordless
Call center
SMS cost optimization
Existing apps
QR code payments
Step-up MFA
Palm Biometric Payments
View all Use Cases
By Industry
Financial services
Marketplace
e-Commerce
FinTech
Crypto
Healthcare
View all Industries
By Integration (identity provider)
Amazon Cognito
Azure AD B2C
Duende IdentityServer
Keycloak
Auth0
NextAuth.js
Custom identity provider
By Role
Engineers
PricingAboutDocsBlog
Schedule a call
Try Authsignal
AUS Flag

Authsignal secures millions of passkey transactions out of our hosted Sydney region.

AUS Flag

Authsignal secures millions of passkey transactions out of our hosted Sydney region.

Join us today!
Right icon
Blog
/
Current article
AWS Cognito
Passkeys
Passkeys implementation
Passwordless authentication
Multi-factor authentication
AWS
Cognito

Amazon Cognito Introduces Passwordless Authentication – but its built-in flows come with limitations

Ashutosh Bhadauriya
⬤
May 14, 2025
Share
Amazon Cognito Introduces Passwordless Authentication – but its built-in flows come with limitations
AWS Partner
Authsignal is an AWS-certified partner and has passed the Well-Architected Review Framework (WAFR) for its Cognito integration.
AWS Marketplace

The Passwordless Update: What’s New

On November 22, 2024, Amazon Cognito announced support for passwordless authentication, enabling users to sign in with passkeys, email one-time passwords (OTPs), or SMS OTPs through Cognito’s Managed Login UI.

This is a significant update, bringing passwordless options directly into Cognito's ecosystem without requiring custom workarounds. It's ideal for businesses already using AWS services that want to stay within the AWS ecosystem while adopting passwordless authentication for their login screen without major engineering effort.

Beyond Login Protection

While Cognito handles basic login security, businesses often need protection beyond just the front door. This is where Authsignal comes in.

When someone's already logged in but tries to transfer money, change account details, or access sensitive data, Authsignal provides the extra security checks you need without the heavy engineering lift.

Building these advanced protections in AWS requires significant engineering work. You'd need to create systems for:

  • Extra verification when someone attempts risky actions
  • Re-authentication for sensitive transactions
  • Advanced fraud detection and observability
  • Flexible security flows that match your specific business needs

Instead of your engineering team spending months building complex authentication systems, you can simply extend AWS Cognito’s functionality with Authsignal - unlocking enterprise-grade security features without the headaches.

‍

‍

How Authsignal Elevates Cognito

Authsignal enhances Cognito by adding the advanced authentication capabilities you need without burdening your engineering team:

  • Secure the Entire Journey - Add checks for sensitive actions, not just logins.
  • Step-Up Authentication - Verify identities before high-stakes moves like payments or data changes.
  • More Ways to Authenticate - Go beyond SMS and email with WhatsApp OTP, biometrics, push notifications, and magic links.
  • Cut Costs - Swap expensive SMS OTPs for alternatives like WhatsApp, leveraging its 3 billion+ users.
  • No-Code Flexibility - Use our no-code rules engine to configure policies.‍
  • Native Mobile App Support - Mobile SDKs to make it easy to integrate passkeys and other passwordless authentication methods into your mobile apps for a fully native experience.

Quick Integration

Authsignal works seamlessly with both Cognito's Managed Login UI and custom Lambda-triggered workflows.

  • Pre-Built UI: Drop Authsignal’s low-code flows into Cognito’s hosted UI for instant passwordless options like passkeys or WhatsApp OTP.
  • Client SDKs: For full control, use Authsignal’s SDKs (web, iOS, Android, React Native, Flutter) to craft custom UIs. Add features like biometric sign-in to native apps with just a few lines of code.

Cognito + Authsignal: Better Together

AWS Cognito’s passwordless authentication is a great step toward modern authentication, enhancing both security and user experience. Authsignal makes it exceptional by adding flexibility, advanced security features, and deeper user insights.

Ready to enhance your authentication strategy? Explore Authsignal’s Cognito integration or schedule a demo to see Authsignal in action.

Question icon
Have a question?
Talk to an expert
NewsletterDemo PasskeysView docs
AWS Cognito
Passkeys
Passkeys implementation
Passwordless authentication
Multi-factor authentication
AWS
Cognito

You might also like

Why pension funds are turning to liveness detection for presence verification
Liveness Detection
Identity Verification
Fraud prevention

Why pension funds are turning to liveness detection for presence verification

April 21, 2026
How a global real estate company strengthened MFA with Authsignal
Azure AD B2C
Multi-factor authentication
Passkeys

How a global real estate company strengthened MFA with Authsignal

April 14, 2026
What is Visa VAMP? Thresholds, fees, and how it affects your dispute ratio
Visa VAMP
Chargebacks
Dispute Management

What is Visa VAMP? Thresholds, fees, and how it affects your dispute ratio

April 13, 2026

Secure your customers’ accounts today with Authsignal

Passkey demoCreate free account
Authsignal Purple Logo

Authsignal delivers passwordless and multi-factor authentication as a service. Focused on powering mid-market and enterprise businesses to rapidly deploy optimized good customer flows that enable a flexible and risk-based approach to authentication.

AICPA SOCFido Certified
LinkedInTwitter
Passwordless / multi-factor authentication (MFA)
Pre-built UI (low code)UI components (customizable)Custom UI (flexible)
Why Authsignal?
Drop-in authentication
Risk-based authentication PasskeysBiometric authenticationWhatsApp OTPSMS OTPEmail OTPMagic linksAuthenticator apps (TOTP)Push authenticationPalm biometricsDigital Credential Verification API
Rules and policies engine
User observability
Industries
Financial services
Marketplace
e-Commerce
FinTech
Crypto
View all industries
Teams
Engineers
Use cases
Account takeovers (ATO)
Go passwordless
Call center
SMS cost optimization
Existing apps
View all use cases
Identity providers (IDPs)
Amazon Cognito
Auth0
Azure AD B2C
Custom identity provider
Duende IdentityServer
Keycloak
NextAuth.js
Integrations
ASP.NET
C#
Java
Node.js
Open ID Connect (OIDC)
PHP
Python
React
Ruby
Ruby on Rails
Compare
Twilio Verify vs AuthsignalAuth0 vs AuthsignalAWS Cognito vs Authsignal + AWS Cognito
Resources
BlogDeveloper docsFree Figma mobile passkeys templateFree Figma desktop passkeys templateFree Figma webapp passkeys template
Company
About usWhy AuthsignalGuidesCareersPress releasesPartnersContact us
What is
SMS OTP
Risk Based Authentication
IP Spoofing
Passwordless authentication
Multi-Factor Authentication (MFA)
United States
+1 214 974-4877
Ireland
+353 12 676529
Australia
+61 387 715 810
New Zealand
+64 275 491 983
© 2026 Authsignal - All Rights Reserved
Terms of servicePrivacy policySecuritySystem statusCookies