For the past couple years I kept asking the same question: how does Microsoft plan to move everyone to passwordless when a brand new user cannot register a passkey in the first place?
Because that is the catch. Registering a passkey requires MFA, and a brand new user has nothing...