> One caveat: I hate non-TOTP MFA. It's either proprietary lock-in or less secure.
Agreed. A particular pain point for me is Apple's proprietary (or SMS-based, even worse) iCloud 2FA, it's just awful. I would use TOTP/HOTP for it in a heartbeat if given the option.