Disable OTP codes for certain devices?
I read a recent horror story how someone had all their information stolen from their computer (using dashlane). Basically, the user had installed a trojan, which keylogged their master password, and then decrypted their vault etc, got everything.
I'm wondering, for 2fa OTP codes, since those are basically just stored in the vault it kinda defeats the purpose of having 2fa. Would it be possible to store only the OTP codes on certain devices? Like I don't mind pulling out my phone to get a code, and I know my phone is way less likely to be hacked, because the 1password app is in its own sandbox, and I only have approved apps installed. But my Mac, there is a much looser requirement (I do install apps sometimes that are not from the app store, or fully digitally signed, I'm a software dev).
If the phone is the only device that can store the OTP (maybe through a separate secret?), then at least if someone manages to trojan my mac, they can't get the OTP codes stored on my phone.
Is this something 1password might be able to implement?
1Password Version: Not Provided
Extension Version: Not Provided
OS Version: Not Provided
Browser: Not Provided
