Same goes for every serious app which need to ID you. The app-based 2FA/MFA is becoming the standard for the web access. This is a need or pattern created by availability of a bad solution. Similar to how the cars created sprawling cities in the USA which prohibits you using your legs.
So, telling people to use website instead of app, is the same as telling them to walk to the corner shop instead of using a car. You can't walk to the many other essential places anymore, though.
You can escape from the car if you live a small village that has everything you need. But you can't escape from apps and internet if you need to feel that you exist in this world.
And to login into my work, I need to first login into my laptop and then enter into a very elaborate way of login into VPN or company WiFi. VPN/WiFi login requires you to first login into company app on your mobile to get a temp password. The company app need to work with other auth apps in a very complex way, making you hop through multiple ID checks. It is very likely that one of these apps might not like your speed of response and block you, requiring you create an incident ticket which itself requires logging into your account first. Since you can't create the ticket, you will call help desk and wait for half-day as they keep shifting your ticket across support queues.
Things are the other way in Finland, where each bank has its own identification app, and many official sites require you to use one for identifying yourself.