> I don't want to go through onerous, incompetent, poorly designed account recovery procedures if a toddler smashes my phone
Why don't you use the printed recovery tokens?
Why don't you use the printed recovery tokens?
Hell, no bank I use (several large and several regional) support generic totp. Some have sms, one has Symantec VIP, proprietary and not redundant.
Edit: since I'm posting too fast according to HN, even though I haven't posted in an hour, I'll say it here. Symantec is totp but You cannot back up your secrets and you cannot have backup codes.
I currently see 53 2fa tokens in my private bitwarden.
You expect me to print, keep safe and manually reset them all when I buy a new phone?
Seriously, though, it's hard to keep track of something that gets used once every five years.