I wish somebody with more patience and unburnt mental bandwidth than me would write an analysis of how bad (or not) it is to store your 2FA seeds in the same database as your passwords, because it seems like not doing so might be somewhat more secure, but also more of a pain in the ass. it's relevant, because more password managers support #TOTP nowadays. #Infosec