Losing access to your mobile device is suddenly a LOT more important when you're routing all of your 2FA requests through it.

I wonder what we can do to avoid this single point of failure. Hardware tokens come to mind, but that's a LOT of tokens if you're doing this right?

