> Phone 2FA would be good but a bit pointless because the 2FA app is on the phone, and so is the banking app.
This is exactly like having a physical token with you. If it gets stolen, they have the tokens.
But, at least, having token on the phone app is waymore convenient for customers and also has another layer of protection (think of the fingerprint/passcode ecc you need to access your phone)
This is exactly like having a physical token with you. If it gets stolen, they have the tokens. But, at least, having token on the phone app is waymore convenient for customers and also has another layer of protection (think of the fingerprint/passcode ecc you need to access your phone)