Now I can automatically decrypt the filesystem just by plugging in the key during boot, and login / sudo just by tapping the button! No more typing passwords, but everything is still encrypted and secure.
A little disappointed that Intel Macs can’t use it with FileVault during boot, but the Mac already has a fingerprint reader so I wasn’t planning to use the YubiKey with it anyway.
The SD card I use in my Raspberry Pi finally wore out this week after running non-stop for almost 2.5 years. Managed to move everything safely to a new “endurance” card, hopefully it will last longer!