"If someone doesn't use 2FA for whatever reason"
I actually use it whenever I receive a token via email and that is fine with me. I do not want to link my phone to this page, no offense but I would be embarrassed to do so :D
I would just like to have the email way of 2fa as an option. Currently the site randomly decides whether I should be sent a token or not, which does not make it safe at all. I guess I get these captcha challenges as I both use VPN and tor, as for me privacy is a top prio.
Anyway I guess I overreacted a bit, I usually just ignored this issue, but that last time it was quite literally close to 30 minutes to be able to login which I think anyone would agree is a bit frustrating.