If the user has not registered 2FA and the app is enforcing 2FA, the user should be prompted to register for 2FA. but instead, the user is being presented by the 2FA input field.
Also, if 2FA is enabled only for OTP, the Auth form is giving an option to send email 2FA as well.