I'm curious what mitigations against this people would suggest.
- Using a very long passcode? (Harder to shoulder surf)
- Using a third-party password manager instead of keychain (something with its own master password independent of Apple ID); in fact you could store intentionally wrong passwords in keychain as a decoy, heh.
- Configure financial apps to disable passcode authentication, requiring their own password/2FA on every login (this becomes inconvenient though... wonder if they can be configured for FaceID only without passcode auth)
- Some process (doesn't have to run on the phone) for rsyncing iCloud content to another service or NAS.