How to Use Passwords and Passkeys on a Mac

The Passwords app on your Mac lets you store, find, and manage website passwords, app passwords, verification codes, and passkeys in one place. You can also use it to create strong passwords, review security alerts, share selected credentials with trusted people, and import or export password data when moving between services.

This guide explains how to use the Passwords app safely and efficiently.

Quick Answer

To use passwords and passkeys on a Mac:

  1. Open the Passwords app.
  2. Unlock it with your Mac login password or Touch ID.
  3. Select a saved account to view its password, verification code, passkey, or security details.
  4. Use Add Password to save a new login manually, or let Safari save credentials when you sign in.
  5. Turn on AutoFill Passwords and Passkeys in System Settings to fill credentials automatically.
  6. Use iCloud Keychain to keep passwords and passkeys available across your Apple devices.

A passkey is a passwordless sign-in credential that uses your device’s security features, such as Touch ID, instead of requiring you to type a password.

Open and Unlock the Passwords App

On a Mac, saved credentials are managed in the Passwords app.

  1. Open Passwords from the Applications folder or Launchpad.
  2. Enter your Mac login password, or authenticate with Touch ID if available.
  3. Select a category in the sidebar, such as:
    All
    Passkeys
    Verification Codes
    Wi-Fi
    Security
    Deleted
  4. Select a website or account to view its details.

You may also be asked to authenticate when copying or revealing sensitive information.

Lock the Passwords App

To lock the app manually:

  1. Open Passwords.
  2. Choose File > Lock All Passwords from the menu bar.

The app also locks automatically after you close it or after a period of inactivity, depending on your Mac’s security settings.

Add and Save a Password Manually

You can add login information directly to the Passwords app if Safari did not save it automatically.

  1. Open Passwords.
  2. Click the Add button, or click File > New Password.
  3. Enter the website or app name in the Website field.
  4. Enter your username or email address.
  5. Enter the password.
  6. Add a note if useful, such as a customer number or account type.
  7. Click Add Password.

For an existing entry, select it and click Edit to change the username, password, website, or notes.

Create a Strong Password

When adding or changing a password, use a long, unique password that you do not reuse elsewhere. If the website provides a password field in Safari, macOS can often suggest a strong password automatically.

You can also create one manually:

  1. Open Passwords.
  2. Select the account you want to update, or create a new entry.
  3. Click Edit.
  4. Click in the password field.
  5. Choose the password suggestion if one appears, or enter a unique password yourself.
  6. Save the change on the website before updating the Passwords entry.

A password saved in the Passwords app does not automatically change the password on the website. You must complete the website’s password-change process.

Find, Copy, and Reveal Saved Passwords

To view a saved password:

  1. Open Passwords and authenticate.
  2. Select All or search for an account.
  3. Select the website or app.
  4. Click the password field or use the copy control next to it.
  5. Authenticate again if macOS requests it.

Avoid pasting passwords into messages, notes, or documents unless you have a specific reason. Anyone who can access that copied text may be able to use the account.

If you believe someone saw or copied a password, change it on the associated website and update the saved entry.

Use Safari to Fill Passwords Automatically

Safari can fill saved passwords and passkeys on websites.

  1. Open Safari.
  2. Go to a website’s sign-in page.
  3. Click the username or password field.
  4. Select the suggested account.
  5. Authenticate with Touch ID or your Mac login password if prompted.

If no suggestion appears, click the key button in the field, if available, and search for the account.

Turn On Password and Passkey AutoFill

If AutoFill is disabled, enable it in System Settings:

  1. Choose Apple menu > System Settings.
  2. Click General.
  3. Click AutoFill & Passwords.
  4. Turn on AutoFill Passwords and Passkeys.
  5. Confirm that Passwords or iCloud Keychain is selected as an available source, if macOS presents that option.

The exact options can vary depending on the macOS configuration and other password managers installed on your Mac.

Use Verification Codes

Many online accounts use two-factor authentication. In addition to a password, they require a temporary six-digit or similar code. The Passwords app can store and generate supported verification codes.

Add a Verification Code

You usually add a code while changing an account’s security settings on the website.

  1. Sign in to the website.
  2. Open the account’s security or two-factor authentication settings.
  3. Choose an authenticator app as the verification method.
  4. Copy the setup key, or display the QR code.
  5. Open Passwords on your Mac.
  6. Select the account.
  7. Click Edit.
  8. Choose Set Up Verification Code.
  9. Paste the setup key, or scan the QR code if that option is available.
  10. Save the entry.

To use the code later:

  1. Open Passwords.
  2. Select the account.
  3. Copy the current verification code.
  4. Paste it into the website’s sign-in form.

Verification codes change regularly. Use the current code shown in the Passwords app, and make sure your Mac’s date and time are correct if codes are repeatedly rejected.

Use Passkeys on macOS

A passkey is a cryptographic sign-in credential created for a specific website or app. Instead of typing a password, you approve sign-in with Touch ID or another device-based authentication method.

Passkeys are generally resistant to phishing because the credential is associated with the legitimate website where it was created.

Create a Passkey

When a website supports passkeys:

  1. Open the website in Safari.
  2. Sign in or begin creating an account.
  3. Choose an option such as Create a passkey or Use a passkey.
  4. Follow the on-screen instructions.
  5. Approve the request with Touch ID or your Mac login password.

The passkey is saved in the Passwords app. If iCloud Keychain is enabled, it can also become available on your other Apple devices signed in to the same Apple Account.

Sign In with a Passkey

  1. Open the website’s sign-in page in Safari.
  2. Enter your username or email address if requested.
  3. Select the passkey option.
  4. Approve the sign-in with Touch ID or your Mac login password.

Some websites may let you use a passkey stored on another device. Look for options such as Other Options or Use a phone or tablet, then follow the displayed instructions.

Delete a Passkey

Deleting a passkey from your Mac does not necessarily delete the account or remove every passkey associated with that website.

  1. Open Passwords.
  2. Select Passkeys.
  3. Select the relevant website.
  4. Click Edit.
  5. Click Delete Passkey, if available.
  6. Confirm the deletion.

Before deleting your only passkey, make sure you have another way to sign in, such as a password, recovery code, or another registered passkey.

Sync Passwords and Passkeys with iCloud Keychain

iCloud Keychain can keep passwords, passkeys, verification codes, and related account information synchronized across supported Apple devices.

To check the setting:

  1. Choose Apple menu > System Settings.
  2. Click your name.
  3. Click iCloud.
  4. Select Passwords or Passwords and Keychain.
  5. Turn on the synchronization option.

The wording may differ depending on the macOS release and account settings.

Syncing is convenient, but it also means that credentials may be available on every approved device using the same Apple Account. Protect those devices with strong device passcodes and biometric authentication where available.

Share Passwords with a Shared Group

The Passwords app can let you share selected passwords and passkeys with trusted people through a shared group. This is useful for household accounts, shared subscriptions, or a small team.

Create a Shared Group

  1. Open Passwords.
  2. Click the New Shared Group button, if shown.
  3. Enter a group name.
  4. Add people from your contacts or invite them as directed.
  5. Send the invitation.
  6. Select the passwords or passkeys to share.
  7. Click Move or the equivalent confirmation button.

Everyone in the group may be able to view and use the shared credentials. Only include accounts that you genuinely want to share.

Add or Remove Shared Items

  1. Open Passwords.
  2. Select the shared group.
  3. Click Edit.
  4. Add or remove passwords, passkeys, or other supported items.
  5. Save the changes.

Leave or Delete a Shared Group

Before leaving a shared group, check whether you still need access to any shared account. Removing yourself can make those credentials unavailable.

  1. Open Passwords.
  2. Select the shared group.
  3. Click the group’s information or management control.
  4. Choose the option to leave or delete the group.
  5. Confirm the action.

Shared groups are intended for people you trust. Do not use them to share credentials with unknown users or to distribute passwords broadly.

Review Security Alerts and Recommendations

The Security section can identify account problems, such as:

  • Reused passwords
  • Weak passwords
  • Passwords exposed in a known data breach
  • Other account-specific security concerns

To review alerts:

  1. Open Passwords.
  2. Click Security.
  3. Select an alert.
  4. Follow the website link or instructions to change the password.
  5. Return to the Passwords app and update the saved password.

A security warning does not necessarily mean your Mac has been hacked. It usually means the saved credential has a weakness or may have appeared in a security incident. Treat the warning seriously, but verify the account and website before making changes.

If a password is reused on multiple websites, change it everywhere it was used. Start with email, banking, shopping, cloud storage, and other accounts that contain sensitive information.

Import Passwords to a Mac

You may be able to import passwords from another password manager or web browser using a CSV file.

Before You Import

CSV files are usually plain text. They may contain usernames and passwords that anyone who opens the file can read.

Warning: Do not leave an exported or imported CSV file in your Downloads folder or on the Desktop. Delete it securely after confirming that the credentials imported correctly. Also check the Trash and empty it when appropriate.

To import:

  1. Open Passwords.
  2. Choose File > Import Passwords from File.
  3. Select the CSV file.
  4. Follow the on-screen instructions.
  5. Review the imported entries for missing websites, usernames, or notes.

The source app may use column names or fields that do not match Apple’s expected format. As a result, some information may need to be corrected manually.

Do not delete your old password-manager data until you have tested important accounts and confirmed that the import is complete.

Export Passwords from a Mac

Exporting creates a file containing your saved credentials.

Warning: An exported password file may contain your passwords in readable form. Anyone with access to the file may be able to access your accounts. Export only when necessary, store the file temporarily in a secure location, and delete it after use.

To export:

  1. Open Passwords.
  2. Choose File > Export All Passwords to File.
  3. Authenticate if prompted.
  4. Choose a secure temporary location.
  5. Complete the export.

After importing the file into the destination password manager, delete the exported file and empty the Trash if appropriate. Do not email it, upload it to an untrusted service, or store it on a shared computer.

Troubleshooting

Safari Does Not Offer a Saved Password

Check the following:

  1. Confirm that the website is saved in Passwords.
  2. Check that the username and website address are correct.
  3. Open System Settings > General > AutoFill & Passwords and confirm that AutoFill Passwords and Passkeys is enabled.
  4. Click the password field and look for the key button or account suggestion.
  5. Update Safari and restart it if the problem continues.

Some websites use unusual sign-in forms that prevent automatic suggestions.

A Passkey Is Missing

Make sure:

  • You are using the same Apple Account and iCloud Keychain settings as when the passkey was created.
  • The passkey was not deleted from Passwords.
  • You are signing in to the correct website domain.
  • The website supports passkeys on your current device and browser.
  • You have another sign-in method available before removing or resetting anything.

A Verification Code Is Rejected

Check that:

  1. The code has not expired.
  2. You are using the code for the correct account.
  3. Your Mac’s date and time are set automatically.
  4. The website’s two-factor authentication setup was completed.
  5. You did not accidentally add spaces when copying the setup key.

If the code still fails, remove and set up the authenticator entry again using the website’s recovery or security settings.

Passwords Do Not Appear on Another Apple Device

Check that the devices:

  • Use the same Apple Account
  • Have iCloud Passwords and Keychain synchronization enabled
  • Have an internet connection
  • Are protected with an appropriate device passcode

Avoid turning synchronization off and on repeatedly until you understand which device contains the most current information.

Frequently Asked Questions

Is the Passwords app the same as Safari AutoFill?

No. The Passwords app stores and manages credentials. Safari AutoFill uses those saved credentials to complete sign-in forms on websites.

Are passkeys safer than passwords?

Passkeys can reduce risks associated with weak, reused, or phishing-prone passwords. They are still protected by your device and account security, so use a strong Mac login password and secure your Apple Account.

Can I use passkeys without Touch ID?

Depending on the Mac and website, you may be able to approve a passkey with your Mac login password or use another nearby device. The available method depends on the device, browser, and website.

Can I edit a password in the Passwords app and change it online?

No. Editing an entry updates the saved information only. To change the real password, use the website’s account or security settings, then save the new password in the Passwords app.

What happens if I delete a saved password?

Deleting a Passwords entry removes the saved credential from the app and potentially from synchronized devices. It does not usually delete the online account or change the website’s password.

Should I share passwords with family members?

Use a shared group only for accounts that genuinely need to be shared, and include only people you trust. For individual accounts, each person should have a separate login whenever the service supports it.

Should I export my passwords as a backup?

An export can help when moving to another password manager, but it is not a safe everyday backup unless the file is carefully protected. Exported files can expose your credentials.

Final Thoughts

The Passwords app provides a central place to manage passwords, verification codes, and passkeys on a Mac. Turn on AutoFill for convenient sign-ins, use unique passwords for accounts that still require them, review the Security section regularly, and protect exported files or shared credentials carefully. For supported websites, passkeys offer a simpler sign-in method without requiring you to remember another password.