Can I ask why app-based 2FA is significant to you? If you're on your phone, wouldn't someone who can access your password manager on it also be able to access your 2FA app on it?
https://nakedsecurity.sophos.com/2016/08/12/sms-or-authentic...
I may be misunderstanding your question?