A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
If a passkey was removed and that action was not expected, treat that passkey as no longer valid and set up a new one.
For a Microsoft personal account:
- Sign in to Advanced Security Options at https://account.live.com/proofs/manage.
- Choose Add a new way to sign in or verify.
- Select Face, Fingerprint, PIN, or Security Key.
- Follow the prompts on the device where the new passkey will be stored.
For a work or school account:
- Sign in to Security info at https://mysignins.microsoft.com/security-info.
- Choose Add sign-in method.
- Select Passkey or Passkey in Microsoft Authenticator.
- Follow the prompts on the device.
Then clean up old or invalid passkeys:
- If a passkey is still shown in Microsoft Authenticator but no longer applies, delete it in the app.
- On Android in Authenticator: tap the account name, tap Settings, then tap Delete passkey.
- Also remove the old passkey from Security info if it is still listed there.
If a sign-in message says the passkey is not found, can no longer be used, or is no longer valid, Microsoft guidance is to delete any passkeys in the authenticator app that no longer apply and set up a new passkey.
If the passkey was on an old device, a new device, or a different Android profile, recreate the passkey on the correct current device/profile and then remove the old one.
Passkeys help protect against phishing, and biometric data stays on the device and is not shared with Microsoft.
References: