How it works
Instead of separate libraries for passwords, passkeys and Google sign-in, an app makes one getCredential call and Android shows a bottom sheet listing what the user has saved for that app. It also saves new passwords and creates passkeys. From Android 14 it works with third-party password managers as well as Google Password Manager, and it replaces the deprecated Google Sign-In, One Tap and Smart Lock APIs.
Passkeys need a Digital Asset Links file (assetlinks.json) on the website, so the app and the site can share credentials. The sheet only hands the app a credential: the app still sends the resulting ID token or passkey response to its server, which must verify it before starting a session.
Credential Manager pricing
Open source
Free (Apache 2.0), part of Android Jetpack.
Approximate, checked September 2026.What the other tools cost
Related terms
More in Mobile apps
Android building blocks