The issueI have with the "always unique" plan is that if they can determine your browser was associated with some set of unique IDs, then they can track you. Imagine a TOTP where the keys were leaked so the adversary can determine the entire set of possible codes.
If everyone's fingerprints always match each other's, then you have plausible deniability.