I can’t answer that (no insight into BW’s developmental processes).
Sounds like a feature request.
Well, given your PIN is random – and not absolutely too short – the risk might be smaller than you think. Also, because e.g. with YubiKeys, after 8 failed attempts, the FIDO2 function of the key gets blocked entirely. (I can’t say, if every hardware security does it exactly the same as Yubico)
If you still don’t feel your PIN would be strong enough – then make it stronger: