Is there any sort of documentation to verify that the user info inputted with automatic formfill on "Secure forms" is protected from theft by a keylogger or trojan collecting clipboard data?
I ask this question because looking at their security implementation from an end-user stand point, it seems the only viable attack surface is capturing the formfill data, assuming you the account is otherwise secured with 2FA.