>>mathia+(OP)
I really want to like this but the limitations described, requiring an admin account with 2FA disabled, makes this more risky than not using it at all.
Until those limitations are resolved, if that’s even possible, this feels like an audit hack rather than a security solution.
>>hnlmor+7W
Yeah, the current approach basically makes this entirely a non-starter for the target audience (eliminate a critical control for people for whom critical controls are a pain point).
Uploading your 2FA tokens to a third party is also likely a non-starter, sorry.