One of my favorite modern cybersecurity design things is when something on the server side authentication fails instead of your actual credentials / MFA, but the failure error message is identical so you spend an hour doing resets and second guessing yourself only to have everything work perfectly a little later on.
@hacks4pancakes It's kind of a frustrating piece of conflicting guidance you seem to get in application design. You're told not told divulge internal errors to external parties, but then UX becomes much worse in cases like this.