It's redundant having the two together. I suppose it still has the nicety of 'unphishable logins'. Personally though, I have a separate KeepassXC DB with all my 2FA stuff there. I use the Raivo OTP[0] app for TOTP. I would only open my 2FA DB when trying to recover from a lost/damaged/stolen device with my Raivo OTP creds in it.<p>[0] <a href="https://raivo-otp.com/" rel="nofollow noreferrer">https://raivo-otp.com/</a>
I suppose it depends on how secure the password manager is and how much security is built into it. I am using 1Password for most of my 2fa stuff (bar my personal and work office 365, plus Authy for some backup 2fa codes and stuff that won't export). Everything in 1pass is secured using my yubikey.