Amazon Cognito, a popular authentication and user management service, traditionally relies on password-based authentication, which can lead to user friction and security risks like credential stuffing and account takeovers. Descope offers a solution by supporting OIDC federated authentication, allowing the integration of passkeys into Amazon Cognito user pools for a secure, passwordless login experience without altering the core application code. This integration simplifies user management, enhances security by eliminating passwords, and improves user experience by facilitating fast, seamless logins across devices. Descope serves as an external OIDC provider, handling passkey-based authentication while Amazon Cognito manages user identity data. For existing users transitioning to passkeys, an AWS Lambda function merges user identities to prevent duplication and maintain roles and permissions. Developers benefit from a lightweight integration that requires minimal ongoing configuration, enabling a focus on product innovation. Descope's platform offers a variety of passwordless options to reduce user friction and enhance security, making it an appealing choice for Amazon Cognito customers seeking improved authentication methods.