The approach I’m suggesting relies on the same secure enclave/TEE infrastructure passkeys use. Over 95% of iOS and Android devices are passkey-ready, TPM 2.0 is required for Windows 11 (although there are adoption issues here) but over a billion people have already activated a passkey. You’re right that coverage isn’t universal, but it’s broad enough to build on and beats uploading your passport to a third party.