Ah ok, I see what you mean. So can we use the PKI solution today to use as a second factor for, say, Google?
Your article makes a valid point about the catch 22 of U2F keys. I simply disagree with your conclusions that it is the user who should try harder to make U2F work. It seems like you are pointing out that U2F is fundamentally broken, but you haven't accepted that yet.