Yeah, the current approach basically makes this entirely a non-starter for the target audience (eliminate a critical control for people for whom critical controls are a pain point).
Uploading your 2FA tokens to a third party is also likely a non-starter, sorry.