We added account 2FA to our task list based on user requests here, but everyone should be using an encrypted email provider with 2FA and a strong password to start with to avoid any risk of being compromised anyways. Will announce once completed and live.
Good to hear that you are listening to the community’s suggestions.
I agree with you that OTP is more secure than the traditional username/password login method, but like other members, I find it a bit inconvenient to have to check your email to get the one-time code every time you need to log in.
Allowing users to choose between OTP and the traditional log in method and adding optional 2FA, would be much appreciated. jmo.