šŸš€ Announcement: identity.ic0.app & identity.internetcomputer.org → id.ai (Internet Identity 2.0)

Please visit identity.ic0.app/self-service to see which identities have been used in the past, if they have a recovery phrase set-up and how many passkeys are registered.

There’s also an export button on this page to share the content from the page with support at https://identitysupport.dfinity.org/hc/en-us/requests/new if more help is needed.

This depends on the hardware wallet implementation to support resident credentials.

For example having a quick look at the Ledger implementation that doesn’t have support yet and their issues, it’s mentioned that this is ongoing work: Since years you're writing that you're working on resident credentials but not progress since 2023! Ā· Issue #104 Ā· LedgerHQ/app-security-key Ā· GitHub

The recommended alternative right now would be a YubiKey (ideally with latest 5.7 firmware).

Aha, i see only newer models have this feature. Resident credentials are a way to save the passkeys on the hardware wallet instead of windows/phone. I’m learning everyday and it seems i need to upgrade my hardware wallet. :smiling_face_with_sunglasses:

Thanks a lot, I think you are right, my problem, I think I forget what I did since that’s happened 5 years ago. I tried one and succeed.

What do you mean that by

What do you mean with this? How it could have be ā€œreplacedā€ already ??

Why would someone have to use their recovery phrase? I mean was this something you guys expected or is because the migration has been going not according to your expectations

100% agree, I didn’t upgrade yet, I’m watching and reading all of your issues before i make it

Is there a way to change the name of IID v2 accounts? I have a few with the same name and I have no way to tell the difference since there are no more account numbers

Might help, i have not done it myself.

I think this page needs to be accessible from https://id.ai/, if it was I would not have needed to come to the forums and ask questions to complete my upgrade. Something like this would be great

I’m concerned about the UX and agree with others who have said essentially ā€œif the devs are struggling with this, regular users will just give upā€œ. The current process is confusing and stressful, and basic features like renaming or listing of accounts are missing. When I log out it returns me to the login screen but continues to show my account in the upper right as if I’m still logged in.

I’d focus on the user journey and really hold folks hands through the process. I have a number of friends who have created an account but don’t use IC dapps on a regular basis. If/when they come back, they are going to need their hand held through this process or they will just give up. The new flows work for new users, but casual existing users are really going to struggle

Thank you for the link sir!

You can find all the identity numbers at id.ai/self-service.

For now, you can workaround the renaming limitation by going through the upgrade flow again with the identity number(s) found in the link above. Keep in mind, to also rename the passkeys in your password manager, you’ll need to either manually rename them there or create new ones and delete the old ones.

I meant with ā€œreplacedā€ that the user himself had reset (changed) their recovery phrase at a later point after writing down the recovery phrase.

This means that the recovery phrase they had previously written down is invalidated, it’s unfortunately a common issue that users have multiple phrases (current and multiple invalidated) written down after a few resets.

To clarify, the user has since been able to gain acces to their account (either through a valid recovery phrase or passkey).

I think this page needs to be accessible from https://id.ai/, if it was I would not have needed to come to the forums and ask questions to complete my upgrade. Something like this would be great

Actually that’s the Help link on the bottom right of the first upgrade modal :sweat_smile:

Most Efficient & Least Painful Way to Upgrade Legacy Internet Identities

This is currently the most efficient and least painful method to upgrade legacy Internet Identities while clearly seeing which ID belongs to what.

If you have legacy IDs lying around, this method is strongly recommended.


Step-by-step Upgrade Method

  1. Go to:
    1. https://id.ai/legacy

  2. Remove all existing passkeys, assuming:

    • Your recovery phrase is verified
    • You can successfully recover the identity if needed
  3. Add one new passkey only

    • Name it something like legacy or the legacy ID number
    • The exact name does not matter
  4. Make sure this is the only passkey listed for that identity

  5. Go to:
    https://id.ai

  6. Sign in → Continue with passkey

  7. Click Upgrade

  8. Enter your legacy ID

  9. Continue

  10. (optional) Additional step remove all the unknown/duplicated passkeys(windows link guide) on windows

VoilĆ .
From testing, this appears to be the most reliable and least confusing way to upgrade.


Issue 1: Passkey Naming Causes Confusion

On https://id.ai/legacy, the name you assign to a passkey is ignored at the OS level.

For example:

  • On Windows, the passkey is always saved as ā€œInternet Identityā€
  • The passkey name cannot be changed, also an windows? restriction
  • This becomes very confusing when managing multiple legacy IDs

Suggested improvement:
Allow the system to automatically use the name set on id.ai/legacy instead of defaulting to ā€œInternet Identityā€.


Issue 2: Adding Additional Devices Is Not Intuitive

When adding another device (for example, a phone):

  1. Go to https://id.ai
  2. Sign in → Continue with passkey

You are only given two options:

  • Create new identity
  • Use existing identity

What’s missing is a third option that takes users directly to:

https://id.ai/activate#<secret_code>

This would solve a large number of onboarding and recovery issues.

Current workaround:

This works, but feels accidental rather than intentional UX.


Final thoughts:
The upgrade process can be smooth, but currently relies too much on users discovering unintuitive flows.
A few small UX improvements would save users hours of frustration and reduce support overhead.

ahh gotcha, thanks for the clarification

Just want to say I think II v2 is great and I found it easy to upgrade. Thank you to the team for the hard work.

Question is, why Dfinity is perfect at doing complex stuff, with complex terminologies, flows, zero user friendly experiences, I’m starting to wonder if i made a good bet on this because onboarding users is completely different to how unicorns achieve mass adoption.

Overall perfection is only as strong as its weakest link. And even once you’ve reached the best it can possibly be, new features along the way will inevitably be introduced, resetting the path until everything is refined and fine-tuned again for the next stage.

I would not worry, dfinity has one of the highest commitment standards I have ever seen.

ā€10char edit post to reply instead of default msgā€

So how can I remove old ā€œinvalidā€ devices. That is a legitimate attack vector, even if the probability is minuscule.