Hi, I’m a security professional (20 years xp) and I will say no to this because MFA is improperly implemented most everywhere (look at apple, most OTP software and soft clients). Plus its not a fail safe, just a strategy to make authentication more secure. I’ve seen many businesses or people who travel or change numbers often for whatever reason suffer from this. Additionally not every account should be associated with a phone number, as they change often. Soft clients cant be backed up, and MFA can even be bypassed with the right code. What we should be teaching people instead is to use unique passwords everywhere in a non-cloud local password database that they back up securely and often. I say, raise the bar instead of lower it. Teach people how to strategize on their own to where more secure behavior becomes inherent. Just my two cents here…. but lovely article. I have clapped, and also followed you. :). Cheers.