(this was build with the assistance of google gemini but it is the steps i followed to get everything working)
This guide addresses TPM device access, container dependencies, pinentry conflicts, and systemd service environment issues for persistent, hardware-backed passkeys on Bazzite (or any Fedora OSTree/immutable system).
The Bazzite host must grant your user permanent access to the TPM device (/dev/tpmrm0).