Toggle in the dev options would only be one more instruction step for the scammers, defeating the purpose of hiding OTP from screen sharing in the first place.
Serious idea - add a warning on enabling dev menu it's often used by scammers.
If user still gets scammed through this path, then there was probably no helping them anyway.