It is nothing stupid/spooky. Remember Google develops for mainstream. They are happy. Just enable 2FA all your issues will go away. Oh, try not to use shady VPNs.
The trick with Google's 2FA is to keep a copy of the setup code and/or QR picture somewhere -- preferably printed and in your fire safe.
Personally I've also got it floating around one of my Linux devices with a small program I can run against it to display the codes, which came in handy when I switched phones and forgot to reload the GA app. (Yes, I know that this defeats some of the security of the second factor, with it supposedly being "something you have" that can't be easily reproduced).
It's a good thing that using a single factor doesn't put you at any increased risk of "losing my account again" as a result of it being easily stolen...
Ive never had issues with losing my Google-password nor having my long, complex password guessed over a more than 10 year period of having that account.
I’ve almost lost my Google account twice in less than a year due to Google’s terrible 2FA implementation.
If migrate to a different country and dont have access to your old number you will be in world of pain.