A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
Based on the documented behavior, when Microsoft Authenticator cannot restore from backup, the only supported options are:
- Verify the correct restore flow on Android
- Before signing in to any account tile, open Authenticator and select Restore from backup (or Begin recovery) on the first screen.
- If already signed in, sign out of all accounts in Authenticator first, then start the restore again. Guidance is in How to sign out from Authenticator (linked from the docs).
- Sign in using the same personal Microsoft account that was used when the backup was created.
- Check what actually restores
- Microsoft personal accounts
- If they used only a 30‑second one-time password code, those codes should be available once restore succeeds.
- If they used passwordless sign-in, only the account name is restored; sign-in must be completed again on each account.
- Work or school accounts
- Only the account name is restored; each must be signed in again.
- 3rd‑party accounts (Amazon, Facebook, Gmail, etc.)
- Only the 30‑second one-time password codes are restored.
- Microsoft personal accounts
- If “Restore from backup” is missing
- Remove or sign out of all accounts in Authenticator so that Restore from backup / Begin recovery appears again on first launch, then repeat the restore steps.
- If restore still fails
- If the backup account itself cannot be accessed, support cannot restore the Authenticator data. Use the Microsoft account sign-in helper to regain access to the backup Microsoft account, then try restore again.
- If restore fails for other reasons (such as the error seen), the documented path is to add each account again manually following the normal “add account” flow for each service.
- If locked out of a work/school tenant as the only admin
- When Authenticator cannot be used and there is no other admin to reset MFA, the Microsoft Data Protection team must be engaged via a support ticket or phone support, as described in the referenced Q&A threads. They can verify identity and help regain access to the tenant.
Because the error message mentions sending logs, ensure logs are sent from the app as requested so the product team can investigate, but operationally the immediate recovery options are limited to: correct restore flow, regaining access to the backup Microsoft account, or re-adding accounts and working with tenant support if this is a business/tenant admin lockout.
References:
- Restore account credentials from Microsoft Authenticator
- Troubleshoot problems with Microsoft Authenticator
- Unable to restore Authenticator account credentials
- I have a Micrsoft business account and I am the admin and the only user registered under this account. I can't log in because i have replaced my phone and the authenticator doesn't work. - Microsoft Q&A
- Severity A Situation - Locked out of global admin account (MFA) - business down - Microsoft Q&A
- Requesting a Tenant Admin MFA Reset - Microsoft Q&A