A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
Manual entry of a setup key in Microsoft Authenticator is only available when adding an account that uses time-based one-time passwords (TOTP). In the current documentation set, only QR-code–based setup and passkey/passwordless registration flows are described; there is no documented path here for entering a TOTP “manual setup key” directly.
For adding or reconfiguring Microsoft work or school accounts, the supported flows are:
- Use the security info wizard from a sign-in prompt:
- Sign in to the work or school account until prompted to keep the account secure.
- In the Keep your account secure wizard, choose Microsoft Authenticator app.
- On the device, open Microsoft Authenticator, select Add account > Work or school account, and follow the QR-code–based setup from the wizard page.
- Use passkeys in Microsoft Authenticator (work or school accounts only, on supported iOS/Android versions):
- Ensure the mobile device is on at least iOS 17 or Android 14.
- Open Microsoft Authenticator and select Add account or + > Work or school account > Sign in.
- Complete MFA.
- Enable Authenticator as a passkey provider in the device settings when prompted, then complete the registration.
- Use the My Security info page to add a passkey stored in Authenticator:
- In a browser, go to My Security info (https://aka.ms/mysecurityinfo).
- Select + Add sign-in method and choose Passkey in Microsoft Authenticator (preview).
- Complete MFA and follow the on-screen steps to complete setup in Authenticator (same-device or cross-device, depending on platform).
If a service specifically provides a TOTP “manual setup key” and there is no QR code, and the app does not show a manual-entry option on Add account, that scenario is not covered in the provided documentation set.
References: