@catherineweird Yubikey's are great for the sites which support them.
@catherineweird have a look at the MFA setup, they're usually called 'Security Keys'. FIDO U2F might also be mentioned.
@intrbiz It seems like there are multiple devices and multiple standards. I can see why the websites just think sod it we'll send a code via text message.
@catherineweird IMHO any sites defaulting to SMS just don't know what they're doing. TOTP approaches are cheaper and better.
The Yubikey stuff took awhile to get good support by the browsers too.
And it seems that Passkeys are the new hotness, but they seem even sillier.
@intrbiz Is there any way to find out if a site supports them?