2FA is too inconvienient* and I think using a password manager to generate a very long password is good enough.
Software 2FA is not even that much more secure to be worth the inconvienience.
And for hardware 2FA keys, there is a higher chance for me to misplace those keys than getting hacked. (I don't have friends to put a backup key in and I don't wanna pay for a safe deposit box)
[*For me personally, your security needs might be different. I don't work with any sensitive classified info or anything like that.]
I hate how companies act like our mommies and daddies needing to protect us. I should be able to make my password “coolguy” or “password” (not that I ever would) and if I get hacked that’s MY fault. It’s so annoying how it gets more and more complex as time goes on. I hate having to make it 90 characters long with 3 social securitiy numbers 10 special characters 3 katakana and 5 hiragana characters and at least 2 characters in Cyrillic
I really hate services that use 2FA but the app runs on your phone. Like the android app for ms teams still wants me to enter a 2FA code that I recieve on the same phone! This adds zero extra security, the teams app should just directly ask for my fingerprint if that is even necessary.