But 2FA is moot if it’s the same device as your bank app, is it not?
[delayed]
Yes. Please tell my bank that.
They know. The EU directive is quite clear that hw tokens are to be preferred over phones. Banks are cheap though and violate it.